CVE-2006-3559
Multiple SQL injection vulnerabilities in Arif Supriyanto auraCMS 1.62 allow remote attackers to execute arbitrary SQL commands and delete all shoutbox messages via the (1) name and (2) pesan parameters.
Date published : 2006-07-12
http://www.securityfocus.com/bid/18867
http://www.securityfocus.com/archive/1/439494/100/0/threaded