Vulnerabilities > Qdblog

DATE CVE VULNERABILITY TITLE RISK
2007-04-26 CVE-2007-2305 SQL-Injection vulnerability in QDBlog
Multiple SQL injection vulnerabilities in authenticate.php in Quick and Dirty Blog (QDBlog) 0.4, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameters.
network
low complexity
qdblog
7.5
2007-04-26 CVE-2007-2304 Scripts Multiple Input Validation vulnerability in QDBlog
Multiple directory traversal vulnerabilities in Quick and Dirty Blog (QDBlog) 0.4, and possibly earlier, allow remote attackers to include and execute arbitrary local files via a ..
network
low complexity
qdblog
7.5