SQL injection vulnerability in auth.php in ScozNet ScozBook BETA 1.1 allows remote attackers to execute arbitrary SQL commands via the username field (adminname variable).
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.1%