CVE-2010-1521
SQL injection vulnerability in include/classes/tzn_user.php in TaskFreak! Original multi user before 0.6.4 allows remote attackers to execute arbitrary SQL commands via the password parameter to login.php.
Date published : 2010-06-30
http://www.securityfocus.com/bid/41218
http://www.securityfocus.com/archive/1/512077/100/0/threaded