CVE-2011-1060
SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the wsnuser cookie to index.php.
Date published : 2011-02-22
http://www.securityfocus.com/bid/46444
http://www.securityfocus.com/archive/1/516519/100/0/threaded