David Castro Apache Authcas 0.4

View All Versions

Vulnerability History

Weakness Analysis

Related Vulnerabilities

Vulnerability Severity Score Release Date Summary
CVE-2007-6342 7.5 Dec. 13, 2007

SQL injection vulnerability in the David Castro AuthCAS module ( 0.4 for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the SESSION_COOKIE_NAME (session ID) in a cookie.