SQL injection vulnerability in auth.php in ScozNet ScozBook BETA 1.1 allows remote attackers to execute arbitrary SQL commands via the username field (adminname variable).
Name | Vendor | Start Version | End Version |
---|---|---|---|
Scozbook | Scoznet | 1.1_beta (including) | 1.1_beta (including) |