6.4
CVSSv2

CVE-2006-2725

Published: 01/06/2006 Updated: 18/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

SQL injection vulnerability in rss/posts.php in Eggblog prior to 3.07 allows remote malicious users to execute arbitrary SQL commands via the id parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

epic designs eggblog

Exploits

<!-- Eggblog <= 3x Multiple Remote Vulnerabilities Discovered by: nukedx Contacts: ICQ: 10072 MSN/Mail: nukedx@nukedxcom web: wwwnukedxcom Original advisory can be found at: wwwnukedxcom/?viewdoc=36 Eggblog <= 306 (rss/postsphp id) Remote SQL injection Example -> [site]/[EggBlog]/rss/postsphp?id=1'/**/UNI ...