|
Description
|
|
Two vulnerabilities were identified in e-moBLOG, which could be exploited by remote attackers to execute arbitrary SQL commands. These flaws are due to input validation errors in the "index.php" and "admin/index.php" scripts that do not properly validate the "monthy" and "login" parameters before being used in SQL statements, which could be exploited by malicious people to conduct SQL injection attacks.
|