VYPR

Clickblog

by Clicktech

CVEs (2)

  • CVE-2006-6189Dec 1, 2006
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in displayCalendar.asp in ClickTech Click Blog allows remote attackers to execute arbitrary SQL commands via the date parameter.

  • CVE-2006-4857Sep 19, 2006
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in default.asp (aka the login page) in ClickTech ClickBlog 2.0 allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) form_codeword (aka the Password field) parameters.