CVE

Id
11508  
CVE No.
CVE-2005-0302  
Status
Candidate  
Description
SQL injection vulnerability in default.asp in BackOffice Lite 6.0 and 6.01 allows remote attackers to execute arbitrary SQL commands via the referer field in the HTTP header.  
Phase
Assigned (20050210)  
Votes
None (candidate not yet proposed)  
Comments