CVE-2008-6332 | Simplecustomer Simple Customer 1.2 Login login.php password sql injection (EDB-7146 / XFDB-46675)
A vulnerability, which was classified as critical, was found in Simplecustomer Simple Customer 1.2. Affected is an unknown function of the file login.php of the component Login. The manipulation of the argument password leads to sql injection.
This vulnerability is traded as CVE-2008-6332. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to add further authentication.