CVE

Id
13889  
CVE No.
CVE-2005-2683  
Status
Candidate  
Description
Multiple SQL injection vulnerabilities in PHPKit 1.6.1 allow remote attackers to execute arbitrary SQL commands via the (1) letter parameter to login/member.php or (2) im_receiver parameter to login/imcenter.php.  
Phase
Assigned (20050823)  
Votes
None (candidate not yet proposed)  
Comments