SQL injection vulnerability in mysql/mysql-auth.pl in the mod_authnz_external module 3.2.5 and earlier for the Apache HTTP Server allows remote attackers to execute arbitrary SQL commands via the user field.
| Software | From | Fixed in |
|---|---|---|
| mod_authnz_external_project / mod_authnz_external | - | 3.2.5.x |
| debian / debian_linux | 5.0 | 5.0.x |
| debian / debian_linux | 7.0 | 7.0.x |
| debian / debian_linux | 6.0 | 6.0.x |