Multiple SQL injection vulnerabilities in cpanel/login.php in EgyPlus 7ammel (aka 7ml) 1.0.1 and previous versions, when magic_quotes_gpc is disabled, allow remote malicious users to execute arbitrary SQL commands via the (1) username or (2) password parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
egyplus 7ammel |