Unspecified vulnerability in PhpLogCon before 1.2.2 allows remote attackers to use arbitrary profiles via unknown vectors involving "'smart' values for userid and password," probably involving an SQL injection vulnerability in the (1) pass and (2) usr parameters in submit.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-12-16T11:00:00
Updated: 2024-08-07T23:38:51.458Z
Reserved: 2005-12-16T00:00:00
Link: CVE-2005-4286
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-12-16T11:03:00.000
Modified: 2011-03-08T02:27:57.360
Link: CVE-2005-4286
Redhat
No data.