SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions, allows remote attackers to obtain sensitive user information via SQL statements in the password field.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Storefront | Lagarde | * | 6.0 (including) |