CVE-2007-3399
SQL injection vulnerability in include/get_userdata.php in Power Phlogger (PPhlogger) 2.2.5 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter to login.php.
Date published : 2007-06-26
http://www.securityfocus.com/bid/24622
http://www.securityfocus.com/archive/1/472199/100/0/threaded