DeskPRO v1.1.0 and below do not adequately filter user provided data, allowing a remote attacker to insert malicious SQL statements into existing ones. Allows attackers to login to the system as an administrator without knowing the password.
983ccb3475e6d82e382857c1d96466127ac14546a3310ec3ddb85f10f737178d