CVE-2006-1807
Multiple SQL injection vulnerabilities in index.php in Musicbox 2.3.3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) start parameter in a search action or (2) type parameter in a top action.
Date published : 2006-04-18
http://www.securityfocus.com/bid/17545
http://www.securityfocus.com/archive/1/441000/100/0/threaded