Variable $log_userid isn't properly sanitized before being used in SQL
query. This can be used to bypass authentication using SQL injection and
make any SQL query by injecting arbitrary SQL code.
Condition: magic_quotes_gpc = off
--------------PoC/Exploit----------------------
Waiting for developer(s) reply.
If there is no reply exploitation code will be published in 10 days
http://evuln.com/vulns/100/exploit.html
--------------Solution---------------------
No Patch available.
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.