Gryphon · Gryphon Gllcts2 · CVE-2008-2746
**Name of the Vulnerable Software and Affected Versions**
Gryphon gllcTS2 version 4.2.4
**Description**
A SQL injection issue exists, allowing remote attackers to execute arbitrary SQL commands. This is achieved via the `detail` parameter in the login.php file.
**Recommendations**
For Gryphon gllcTS2 version 4.2.4, consider restricting access to the login.php file until a patch is available, and avoid using the `detail` parameter in this context to minimize the risk of exploitation.