VYPR

Mafia Moblog

by Mafia Moblog

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-29770.000.01Jun 12, 2006SQL injection vulnerability in big.php in Mafia Moblog 0.6M1 and earlier allows remote attackers to execute arbitrary SQL commands via the img parameter.
CVE-2006-29780.000.00Jun 12, 2006Mafia Moblog 0.6M1 and earlier allows remote attackers to obtain the installation path in an error message via a direct request to (1) big.php and (2) upgrade.php.