Multiple SQL injection vulnerabilities in archives.php in Particle Blogger 1.2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the month parameter and other unspecified vectors.
https://exchange.xforce.ibmcloud.com/vulnerabilities/34583
http://www.securityfocus.com/archive/1/469984/100/0/threaded