Unspecified vulnerability in PhpLogCon before 1.2.2 allows remote attackers to use arbitrary profiles via unknown vectors involving "'smart' values for userid and password," probably involving an SQL injection vulnerability in the (1) pass and (2) usr parameters in submit.php.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published: 2005-12-16T11:00:00
Updated: 2024-08-07T23:38:51.458Z
Reserved: 2005-12-16T00:00:00
Link: CVE-2005-4286

No data.

Status : Modified
Published: 2005-12-16T11:03:00.000
Modified: 2024-11-21T00:03:53.270
Link: CVE-2005-4286

No data.