SQL injection vulnerability in GeoNetwork opensource before 2.0.3 allows remote attackers to execute arbitrary SQL commands, and complete a login, via unspecified vectors.
https://exchange.xforce.ibmcloud.com/vulnerabilities/29771
http://www.vupen.com/english/advisories/2006/4151
http://www.securityfocus.com/bid/20671
http://sourceforge.net/project/shownotes.php?release_id=457195