CVE-2004-2067 | Jaws 0.2/0.3/0.4 controlpanel.php user/password/crypted_password sql injection (EDB-24334 / XFDB-16847)
A vulnerability was found in Jaws 0.2/0.3/0.4. It has been rated as critical. Affected by this issue is some unknown functionality of the file controlpanel.php. The manipulation of the argument user/password/crypted_password leads to sql injection.
This vulnerability is handled as CVE-2004-2067. The attack may be launched remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.