SQL injection vulnerability in userlogin.jsp in Daffodil CRM 1.5 allows remote attackers to execute arbitrary SQL commands via unspecified parameters in a login action.
https://exchange.xforce.ibmcloud.com/vulnerabilities/24450
http://www.vupen.com/english/advisories/2006/0412
http://www.securityfocus.com/archive/1/423718/100/0/threaded