Vulnerabilities > Tirzen
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2010-05-06 | CVE-2010-1583 | SQL Injection vulnerability in multiple products SQL injection vulnerability in the loadByKey function in the TznDbConnection class in tzn_mysql.php in Tirzen (aka TZN) Framework 1.5, as used in TaskFreak! before 0.6.3, allows remote attackers to execute arbitrary SQL commands via the username field in a login action. | 7.5 |