Vulnerabilities > Eaden Mckee

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1309 Cross-Site Scripting vulnerability in Eaden Mckee Bblog 0.7.4
Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.
network
eaden-mckee
4.3
2005-04-23 CVE-2005-1310 SQL-Injection vulnerability in Eaden Mckee Bblog 0.7.4
SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter.
network
low complexity
eaden-mckee
7.5
2004-12-31 CVE-2004-1570 SQL Injection vulnerability in Eaden Mckee Bblog 0.7.2/0.7.3
SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter.
network
low complexity
eaden-mckee
7.5