SQL injection vulnerability in the blogwriter module 2.0 for Miniweb allows remote attackers to execute arbitrary SQL commands via the historymonth parameter to index.php.
References
Configurations
History
No history.
Information
Published : 2008-05-14 17:20
Updated : 2017-09-29 01:31
NVD link : CVE-2008-2197
Mitre link : CVE-2008-2197
JSON object : View
Products Affected
miniweb2
- blog_writer
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')