SQL injection vulnerability in login.asp in ASPThai.Net ASPThai Forums 8.0 and earlier allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the password field.
https://exchange.xforce.ibmcloud.com/vulnerabilities/24359
http://www.vupen.com/english/advisories/2006/0372
http://www.securityfocus.com/bid/16404
http://securitytracker.com/id?1015548
http://securityreason.com/securityalert/381