SQL injection vulnerability in login.php in myBloggie 2.1.3-beta and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Mybloggie | Mywebland | 2.1.1 (including) | 2.1.1 (including) |
| Mybloggie | Mywebland | 2.1.2 (including) | 2.1.2 (including) |
| Mybloggie | Mywebland | 2.1.3_beta (including) | 2.1.3_beta (including) |