CVE-2010-1090
SQL injection vulnerability in index.php in phpMySite allows remote attackers to execute arbitrary SQL commands via the action parameter.
Date published : 2010-03-24
http://www.exploit-db.com/exploits/11588
http://packetstormsecurity.org/1002-exploits/phpmysite-sqlxss.txt