Unrated severityNVD Advisory· Published Jan 18, 2008· Updated Apr 23, 2026
CVE-2008-0360
CVE-2008-0360
Description
Multiple SQL injection vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to execute arbitrary SQL commands via (1) the blogid parameter to index.php, (2) the user parameter to action.php, or (3) the field parameter to admin/plugins/table/index.php.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5- marc.infonvdExploit
- www.securityfocus.com/bid/27317nvdExploitPatch
- secunia.com/advisories/28523nvdVendor Advisory
- blogcms.com/wiki/changelognvd
- www.exploit-db.com/exploits/4919nvd
News mentions
0No linked articles in our index yet.