CVE-2005-4286

Unspecified vulnerability in PhpLogCon before 1.2.2 allows remote attackers to use arbitrary profiles via unknown vectors involving "'smart' values for userid and password," probably involving an SQL injection vulnerability in the (1) pass and (2) usr parameters in submit.php.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:phplogcon:phplogcon:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:phplogcon:phplogcon:1.2.0:*:*:*:*:*:*:*
cpe:2.3:a:phplogcon:phplogcon:1.2.1:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-12-16 11:03

Updated : 2011-03-08 02:27


NVD link : CVE-2005-4286

Mitre link : CVE-2005-4286

CVE.ORG link : CVE-2005-4286


JSON object : View

Products Affected

phplogcon

  • phplogcon