Vulnerabilities
Vulnerable Software
Webspot:  Security Vulnerabilities
PHP remote file inclusion vulnerability in Webspotblogging 3.0.1 allows remote attackers to execute arbitrary PHP code via a URL in the path parameter to (1) inc/logincheck.inc.php, (2) inc/adminheader.inc.php, (3) inc/global.php, or (4) inc/mainheader.inc.php. NOTE: some of these vectors were also reported for 3.0 in a separate disclosure.
CVSS Score
6.4
EPSS Score
0.125
Published
2006-06-06
SQL injection vulnerability in WebspotBlogging 3.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the username parameter to login.php.
CVSS Score
7.5
EPSS Score
0.04
Published
2006-01-19


Contact Us

Shodan ® - All rights reserved