CVE-2009-3504
SQL injection vulnerability in offers_buy.php in Alibaba Clone 3.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
Date published : 2009-09-30
http://packetstormsecurity.org/0909-exploits/alibaba30-sql.txt