Vulnerabilities > Tirzen

DATE CVE VULNERABILITY TITLE RISK
2010-05-06 CVE-2010-1583 SQL Injection vulnerability in multiple products
SQL injection vulnerability in the loadByKey function in the TznDbConnection class in tzn_mysql.php in Tirzen (aka TZN) Framework 1.5, as used in TaskFreak! before 0.6.3, allows remote attackers to execute arbitrary SQL commands via the username field in a login action.
network
low complexity
taskfreak tirzen CWE-89
7.5