CVE-2007-2854 | Bti-tracker 1.4.1 account_change.php langue sql injection (EDB-3970 / XFDB-34447)
A vulnerability, which was classified as critical, has been found in Bti-tracker 1.4.1. This issue affects some unknown processing of the file account_change.php. The manipulation of the argument langue leads to sql injection.
The identification of this vulnerability is CVE-2007-2854. The attack may be initiated remotely. Furthermore, there is an exploit available.