CVE-2008-2671
SQL injection vulnerability in comments.php in DCFM Blog 0.9.4 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Date published : 2008-06-11
http://www.securityfocus.com/bid/29627
http://www.securityfocus.com/archive/1/493220/100/0/threaded
