CVE-2015-1450
SQL injection vulnerability in Restaurant Biller allows remote attackers to execute arbitrary SQL commands via the cid parameter in a category action to index.php.
Date published : 2015-02-02
http://packetstormsecurity.com/files/130122/Restaurantbiller-SQL-Injection-Shell-Upload.html