Vulnerabilities > Simplog

DATE CVE VULNERABILITY TITLE RISK
2006-04-13 CVE-2006-1776 Remote File Include vulnerability in Simplog
PHP remote file inclusion vulnerability in doc/index.php in Jeremy Ashcraft Simplog 0.9.2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the s parameter.
network
low complexity
simplog
7.5
2005-09-27 CVE-2005-3076 SQL Injection vulnerability in Simplog 0.9.1
Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid, (3) cid, or (4) m parameters to archive.php, or the (5) blogid parameter to blogadmin.php.
network
low complexity
simplog
7.5