SQL injection vulnerability in protect.php in X-Scripts X-Protection 1.10, with magic_quotes_gpc disabled, allows remote attackers to execute arbitrary SQL commands via the (1) username and (2) password parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
X-statistics | X-scripts | 1.10 (including) | 1.10 (including) |