CVE Vulnerabilities

CVE-2004-2067

Published: Jul 29, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

SQL injection vulnerability in controlpanel.php in Jaws Framework and Content Management System 0.4 allows remote attackers to execute arbitrary SQL and bypass authentication via the (1) user, (2) password, or (3) crypted_password parameters.

Affected Software

NameVendorStart VersionEnd Version
JawsJaws0.2 (including)0.2 (including)
JawsJaws0.3 (including)0.3 (including)
JawsJaws0.4 (including)0.4 (including)

References