CVE

Id
25891  
CVE No.
CVE-2007-2534  
Status
Candidate  
Description
** DISPUTED ** Multiple SQL injection vulnerabilities in admin.php in phpHoo3 allow remote attackers to execute arbitrary SQL commands via the (1) ADMIN_USER (USER) and (2) ADMIN_PASS (PASS) parameters during a login. NOTE: CVE disputes this vulnerability, since ADMIN_USER/ADMIN_PASS are initialized before use.  
Phase
Assigned (20070508)  
Votes
None (candidate not yet proposed)  
Comments