Vulnerabilities > CVE-2005-2009 - Unspecified vulnerability in Ublog Reload 1.0.5
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN ublog
exploit available
Summary
Multiple SQL injection vulnerabilities in Ublog Reload 1.0.5 allow remote attackers to execute arbitrary SQL commands via the (1) ci, (2) d, or (3) m parameter to index.asp, or the (4) bi parameter to blog_comment.asp.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Exploit-Db
description Ublog Reload 1.0.5 blog_comment.asp y Parameter SQL Injection. CVE-2005-2009. Webapps exploit for asp platform id EDB-ID:25844 last seen 2016-02-03 modified 2005-06-20 published 2005-06-20 reporter Dedi Dwianto source https://www.exploit-db.com/download/25844/ title Ublog Reload 1.0.5 blog_comment.asp y Parameter SQL Injection description Ublog Reload 1.0.5 index.asp Multiple Parameter SQL Injection. CVE-2005-2009 . Webapps exploit for asp platform id EDB-ID:25843 last seen 2016-02-03 modified 2005-06-20 published 2005-06-20 reporter Dedi Dwianto source https://www.exploit-db.com/download/25843/ title Ublog Reload 1.0.5 index.asp Multiple Parameter SQL Injection