SQL injection vulnerability in index.php in the NP_SEO plugin in BLOG:CMS before 4.1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. Upgrade to BLOG:CMS version 4.1.0 :
http://sourceforge.net/project/showfiles.php?group_id111880
Publication date: Fri, 07 Jul 2006 01:05:00 +0000