CVE Vulnerabilities

CVE-2007-1445

Published: Mar 14, 2007 | Modified: Oct 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in the heme preview feature for default.asp in BP Blog 7.0 through 7.0.2 allows remote attackers to execute arbitrary SQL commands via the layout parameter.

Affected Software

Name Vendor Start Version End Version
Betaparticle_blog Betaparticle * 7.0.2 (including)
Betaparticle_blog Betaparticle 7.0 (including) 7.0 (including)

References