SQL injection vulnerability in admin.php in My Game Script 2.0 allows remote attackers to execute arbitrary SQL commands via the user parameter (aka the username field). NOTE: some of these details are obtained from third party information.Referenceshttp://osvdb.org/54459https://exchange.xforce.ibmcloud.com/vulnerabilities/50528http://secunia.com/advisories/35085http://www.securityfocus.com/bid/34963https://www.exploit-db.com/exploits/8676