CVE-2017-17640
Advanced World Database 2.0.5 has SQL Injection via the city.php country or state parameter, or the state.php country parameter.
Date published : 2017-12-13
https://www.exploit-db.com/exploits/43311/
https://packetstormsecurity.com/files/145352/Advanced-World-Database-2.0.5-SQL-Injection.html