CVE-2003-0025

Multiple SQL injection vulnerabilities in IMP 2.2.8 and earlier allow remote attackers to perform unauthorized database activities and possibly gain privileges via certain database functions such as check_prefs() in db.pgsql, as demonstrated using mailbox.php3.

Date published : 2003-01-15

http://www.securityfocus.com/bid/6559

http://marc.info/?l=bugtraq&m=104204786206563&w=2