CVE

Id
8802  
CVE No.
CVE-2004-0374  
Status
Candidate  
Description
Interchange before 5.0.1 allows remote attackers to "expose the content of arbitrary variables" and read or modify sensitive SQL information via an HTTP request ending with the "__SQLUSER__" string.  
Phase
Assigned (20040329)  
Votes
None (candidate not yet proposed)  
Comments