info
discussion
exploit
solution
references
Mahara Username Generation SQL Injection Vulnerability
References:
Mahara 1.2.4, 1.1.8, and 1.0.14 Released
(Mahara)
Mahara Homepage
(Mahara)
SQL injection in 1.0.13, 1.1.7 and 1.2.3
(Mahara)
Privacy Statement
Copyright 2010, SecurityFocus