Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
drumster blogme 3.0 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2007-2661
SQL injection vulnerability in archshow.asp in BlogMe 3.0 allows remote malicious users to execute arbitrary SQL commands via the var parameter, a different vector than CVE-2006-5976.
Drumster Blogme 3.0
1 EDB exploit
6.8
CVSSv2
CVE-2006-5975
Multiple cross-site scripting (XSS) vulnerabilities in comments.asp in BlogMe 3.0 allow remote malicious users to inject arbitrary web script or HTML via the (1) Name, (2) URL, or (3) Comments field.
Drumster Blogme 3.0
1 EDB exploit
7.5
CVSSv2
CVE-2006-5976
Multiple SQL injection vulnerabilities in admin_login.asp in BlogMe 3.0 allow remote malicious users to execute arbitrary SQL commands via the (1) Username or (2) Password field. NOTE: some of these details are obtained from third party information.
Drumster Blogme 3.0
1 EDB exploit
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30043
camera
CVE-2023-40404
CVE-2024-2793
client side
CVE-2024-4469
CVE-2024-3565
CVE-2024-29825
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started