MyClassifieds SQL Versions below 2.13 are vulnerable to a SQL injection attack. The problem is due to improper sanitization of user input for the email variable. A remote attacker could insert arbitrary SQL code in the email variable. The passwords of the users can be written into a file and made world readable.
04c3f8142c6f5e430a1e163f919eff03fe8721fc45a531812584a2ec6b4a31ca