CVE-2006-1778
Simplog 0.9.2 - SQL Injection
Title source: llmDescription
Multiple SQL injection vulnerabilities in Jeremy Ashcraft Simplog 0.9.2 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) blogid parameter in (a) index.php and (b) archive.php, the (2) m and (3) y parameters in archive.php, and the (4) sql parameter in (c) server.php.
Exploits (1)
References (11)
Scores
EPSS
0.0442
EPSS Percentile
89.1%
Details
Status
published
Products (1)
simplog/simplog
< 0.9.2
Published
Apr 13, 2006
Tracked Since
Feb 18, 2026