SQL injection vulnerability in auth.php in ScozNet ScozBook BETA 1.1 allows remote attackers to execute arbitrary SQL commands via the username field (adminname variable).
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Scozbook | Scoznet | 1.1_beta (including) | 1.1_beta (including) |