CVE-2015-4678
SQL injection vulnerability in Persian Car CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter to the default URI.
Date published : 2015-06-19
http://www.securityfocus.com/bid/75345
http://packetstormsecurity.com/files/132216/Persian-Car-CMS-1.0-SQL-Injection.html