|
Description
|
|
Multiple vulnerabilities have been identified in DSLogin, which may be exploited by remote attackers to execute arbitrary SQL commands. These flaws are due to input validation errors in the "include/login.php" and "admin/index.php" scripts that do not properly validate the "loginname", "pass", and "userid" variables before being used in SQL statements, which could be exploited by malicious people to conduct SQL injection attacks.
|