Vulnerabilities > Newlife Blogger > Newlife Blogger > 3.3.1

DATE CVE VULNERABILITY TITLE RISK
2009-02-19 CVE-2008-6180 SQL Injection vulnerability in Newlife Blogger Newlife Blogger 3.3.1
SQL injection vulnerability in system/nlb_user.class.php in NewLife Blogger 3.0 and earlier, and possibly 3.3.1, allows remote attackers to execute arbitrary SQL commands via the nlb3 cookie.
network
low complexity
newlife-blogger CWE-89
7.5