VYPR
Unrated severityNVD Advisory· Published Jun 12, 2008· Updated Jun 16, 2026

CVE-2008-2685

CVE-2008-2685

Description

SQL injection vulnerability in article.asp in Battle Blog 1.25 Build 4 and earlier allows remote attackers to execute arbitrary SQL commands via the entry parameter, a different vector than CVE-2008-2626.

Affected products

2
  • cpe:2.3:a:battleblog:battleblog:*:build_4:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:battleblog:battleblog:*:build_4:*:*:*:*:*:*range: <=1.25
    • (no CPE)range: <=1.25 Build 4

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.