SQL injection vulnerability in weblog_posting.php in Blog Mod 0.2.x allows remote attackers to execute arbitrary SQL commands via the r parameter.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Blog_mod | Blog_mod | 0.2.3 (including) | 0.2.3 (including) | 
| Blog_mod | Blog_mod | 0.2.4 (including) | 0.2.4 (including) | 
| Blog_mod | Blog_mod | 0.2.4b (including) | 0.2.4b (including) |