CVE

Id
35844  
CVE No.
CVE-2008-5727  
Status
Candidate  
Description
SQL injection vulnerability in modules/auth/password_recovery.php in AIST NetCat 3.12 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the query string.  
Phase
Assigned (20081226)  
Votes
None (candidate not yet proposed)  
Comments