CVE-2008-2685 Information

Description

SQL injection vulnerability in article.asp in Battle Blog 1.25 Build 4 and earlier allows remote attackers to execute arbitrary SQL commands via the entry parameter a different vector than CVE-2008-2626.

Reference

http://www.davethewebguy.com/battleblog/article.asp?entry=24 http://www.vupen.com/english/advisories/2008/1737 https://exchange.xforce.ibmcloud.com/vulnerabilities/43018

Share on: