2003-04-02 05:00:00
mitre
PUBLISHED
Demarc PureSecure 1.05 allows remote attackers to gain administrative privileges via a SQL injection attack in a session ID that is stored in the s_key cookie.