Vulnerabilities > BO Blog

DATE CVE VULNERABILITY TITLE RISK
2019-02-07 CVE-2019-7587 SQL Injection vulnerability in Bo-Blog BW
Bo-blog Wind through 1.6.0-r allows SQL Injection via the admin.php/comments/batchdel/ comID parameter because this parameter is mishandled in the mode/admin.mode.php delBlockedBatch function.
network
low complexity
bo-blog CWE-89
7.5