Description
|
|
A vulnerability was identified in Timecan CMS, which may be exploited by remote attackers to execute arbitrary SQL commands and scripting code. This flaw is due to an input validation error in the "mcl_login.asp" script when processing a specially crafted "email" parameter, which may be exploited by remote users to conduct SQL injection attacks or cause arbitrary scripting code to be executed by the user's browser.
|