CVE-2006-5017
SQL injection vulnerability in admin/all_users.php in Szava Gyula and Csaba Tamas e-Vision CMS, probably 1.0, allows remote attackers to execute arbitrary SQL commands via the from parameter.
Date published : 2006-09-27
http://www.securityfocus.com/bid/20147
http://www.securityfocus.com/archive/1/446706/100/0/threaded