Vulnerabilities > E107 > E107 > 0.7.20

DATE CVE VULNERABILITY TITLE RISK
2010-05-27 CVE-2010-2098 SQL-Injection vulnerability in E107
Incomplete blacklist vulnerability in usersettings.php in e107 0.7.20 and earlier allows remote attackers to conduct SQL injection attacks via the loginname parameter.
network
low complexity
e107
7.5