7.5
CVSSv2

CVE-2007-1445

Published: 14/03/2007 Updated: 19/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

SQL injection vulnerability in the heme preview feature for default.asp in BP Blog 7.0 up to and including 7.0.2 allows remote malicious users to execute arbitrary SQL commands via the layout parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

betaparticle betaparticle blog 7.0

betaparticle betaparticle blog

Exploits

##################################### # BeyazKurt <B3yazKurt@HotmailCom> # Script : BP Blog # D0rk : "Powered by BP Blog 70" # thnx : Foreverslam and all WorldHackerz Team! # # WorldHackerz Mirr0r'da Taht Bizimdir (h) :=) ##################################### ------- Exploit : wwwSiteCom/Path/defaultasp?layout=-1%20%20union%2 ...