certaindeath

2 exploits Active since Feb 2009
CVE-2009-0405 EXPLOITDB python WORKING POC
smartsitecms 1.0 - SQL Injection via articles.php var Parameter
SQL injection vulnerability in articles.php in smartSite CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the var parameter.
CVE-2009-0493 EXPLOITDB text WORKING POC
IT!CMS < 0.21-alpha - SQL Injection via Username Parameter
SQL injection vulnerability in login.php in IT!CMS 2.1a and earlier allows remote attackers to execute arbitrary SQL commands via the Username.