SQL injection vulnerability in administration/includes/login/auth.php in HotPlug CMS 1.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username and (2) password parameters.
References
Configurations
History
No history.
Information
Published : 2006-06-23 00:02
Updated : 2024-02-04 16:52
NVD link : CVE-2006-3190
Mitre link : CVE-2006-3190
CVE.ORG link : CVE-2006-3190
JSON object : View
Products Affected
hotplug_cms
- hotplug_cms
CWE