Filtered by vendor Eaden Mckee Subscriptions
Filtered by product Bblog Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2005-1309 1 Eaden Mckee 1 Bblog 2021-06-15 N/A
Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.
CVE-2005-1310 1 Eaden Mckee 1 Bblog 2021-06-15 N/A
SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter.
CVE-2004-1570 1 Eaden Mckee 1 Bblog 2017-07-11 N/A
SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter.