CVE
- Id
- 15172
- CVE No.
- CVE-2005-3968
- Status
- Candidate
- Description
- SQL injection vulnerability in auth.inc.php in PHPX 3.5.9 and earlier allows remote attackers to execute arbitrary SQL commands, bypass authentication, and upload arbitrary PHP code via the username parameter.
- Phase
- Assigned (20051203)
- Votes
- None (candidate not yet proposed)
- Comments