CVE-2008-3351
Atom PhotoBlog <1.1.5b1 - SQL Injection
Title source: llmDescription
SQL injection vulnerability in atomPhotoBlog.php in Atom PhotoBlog 1.0.9.1 and 1.1.5b1 allows remote attackers to execute arbitrary SQL commands via the photoId parameter in a show action.
Exploits (2)
References (4)
Scores
EPSS
0.0061
EPSS Percentile
69.5%
Classification
CWE
CWE-89
Status
draft
Affected Products (2)
atomphotoblog/atomphotoblog
atomphotoblog/atomphotoblog
Timeline
Published
Jul 28, 2008
Tracked Since
Feb 18, 2026