Vulnerabilities > Bitdamaged
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2006-05-04 | CVE-2006-2177 | Cross-Site Scripting vulnerability in Bitdamaged Geoblog Mod1.0 Cross-site scripting (XSS) vulnerability in viewcat.php in geoBlog 1.0 allows remote attackers to inject arbitrary web script or HTML via the cat parameter. network bitdamaged | 4.3 |
2006-01-18 | CVE-2006-0249 | SQL Injection vulnerability in Bitdamaged Geoblog Mod1.0 SQL injection vulnerability in viewcat.php in BitDamaged geoBlog MOD_1.0 allows remote attackers to execute arbitrary SQL commands, then steal credentials and upload files, via the cat parameter ($tmpCategory variable). | 7.5 |