SQL injection vulnerability in login.php in miniBloggie 1.0 and earlier, when gpc_magic_quotes is disabled, allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username and (2) password parameters.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2006-01-25T11:00:00

Updated: 2024-08-07T16:34:14.598Z

Reserved: 2006-01-25T00:00:00

Link: CVE-2006-0417

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2006-01-25T11:03:00.000

Modified: 2018-10-19T15:44:42.347

Link: CVE-2006-0417

cve-icon Redhat

No data.