Vulnerabilities > Newlife Blogger

DATE CVE VULNERABILITY TITLE RISK
2009-02-19 CVE-2008-6180 SQL Injection vulnerability in Newlife Blogger Newlife Blogger 3.3.1
SQL injection vulnerability in system/nlb_user.class.php in NewLife Blogger 3.0 and earlier, and possibly 3.3.1, allows remote attackers to execute arbitrary SQL commands via the nlb3 cookie.
network
low complexity
newlife-blogger CWE-89
7.5
2005-06-01 CVE-2005-1818 SQL Injection vulnerability in NewLife Blogger
Multiple SQL injection vulnerabilities in NewLife Blogger before 3.3.1 allow remote attackers to execute arbitrary SQL commands via unknown attack vectors.
network
low complexity
newlife-blogger
7.5