Incomplete blacklist vulnerability in default.asp in 8pixel.net Simple Blog 2.3 and earlier allows remote attackers to conduct SQL injection attacks via > characters in the id parameter, which are not filtered by the protection mechanism.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Simple_blog | 8pixel.net | 2.0 (including) | 2.0 (including) |
Simple_blog | 8pixel.net | 2.1 (including) | 2.1 (including) |
Simple_blog | 8pixel.net | 2.2 (including) | 2.2 (including) |
Simple_blog | 8pixel.net | 2.3 (including) | 2.3 (including) |