CVE-2008-6376
SQL injection vulnerability in main.asp in Jbook allows remote attackers to execute arbitrary SQL commands via the password (pass parameter).
Date published : 2009-03-02
http://www.securityfocus.com/bid/32599
http://packetstormsecurity.org/0812-exploits/jbook-disclosesql.txt