Multiple SQL injection vulnerabilities in authenticate.php in Quick and Dirty Blog (QDBlog) 0.4, and possibly earlier, allow remote malicious users to execute arbitrary SQL commands via the (1) username and (2) password parameters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
qdblog qdblog |