CVE-2006-7144
SQL injection vulnerability in Call Center Software 0.93 and earlier allows remote attackers to execute arbitrary SQL commands and bypass authentication via the user name in the login page.
Date published : 2007-03-07
http://www.securityfocus.com/bid/20474
http://www.securityfocus.com/archive/1/448423/100/0/threaded