CVE-2010-4776
SQL injection vulnerability in takefreestart.php in PreProjects Pre Online Tests Generator Pro allows remote attackers to execute arbitrary SQL commands via the tid2 parameter.
Date published : 2011-03-23
http://www.exploit-db.com/exploits/15526
http://packetstormsecurity.org/files/view/95817/potgp-sql.txt