Security Advisory
CVE-2010-1521
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
SQL injection vulnerability in include/classes/tzn_user.php in TaskFreak! Original multi user before 0.6.4 allows remote attackers to execute arbitrary SQL commands via the password parameter to login.php.