SQL injection vulnerability in Confixx 3.08 and earlier allows remote attackers to execute arbitrary SQL commands via the "change user" field.
Link | Tags |
---|---|
http://securityreason.com/securityalert/694 | third party advisory |
http://www.securityfocus.com/bid/13355 | vdb entry |
http://secunia.com/advisories/15121 | third party advisory |
http://marc.info/?l=bugtraq&m=111444886429814&w=2 | mailing list |
http://www.osvdb.org/15815 | vdb entry |