SQL injection vulnerability in default.asp (aka the login page) in ClickTech ClickBlog 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) form_codeword (aka the Password field) parameters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Clickblog | Clicktech | 2.0 (including) | 2.0 (including) |