Security Advisory

CVE-2006-0403

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-01-25 02:00:00
Last updated 2024-08-07 16:34:14
Assigner mitre
State PUBLISHED

Description

Multiple SQL injection vulnerabilities in e-moBLOG 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) monthy parameter to index.php or (2) login parameter to admin/index.php. NOTE: some sources have reported item 1 as involving the "monthly" parameter, but this is incorrect.