Vulnerabilities > PHP Blue Dragon

DATE CVE VULNERABILITY TITLE RISK
2007-08-13 CVE-2007-4313 Input Validation vulnerability in PHP Blue Dragon PHP Blue Dragon CMS 3.0
PHP remote file inclusion vulnerability in public_includes/pub_blocks/activecontent.php in Php Blue Dragon CMS 3.0.0 allows remote attackers to execute arbitrary PHP code via a URL in the vsDragonRootPath parameter, a different vector than CVE-2006-2392, CVE-2006-3076, and CVE-2006-6958.
network
php-blue-dragon
6.8
2007-08-13 CVE-2007-4312 SQL-Injection vulnerability in PHP Blue Dragon PHP Blue Dragon CMS 3.0
SQL injection vulnerability in index.php in Php Blue Dragon CMS 3.0.0 allows remote attackers to execute arbitrary SQL commands via the article_id parameter in a "print articles" action.
network
low complexity
php-blue-dragon
7.5