SQL injection vulnerability in jobedit.asp in Leigh Business Enterprises (LBE) Web Helpdesk before 4.0.0.81 allows remote attackers to execute arbitrary SQL commands via the id parameter.Referenceshttp://www.securiteam.com/windowsntfocus/5QP0M0ADGI.htmlhttp://secunia.com/advisories/12123http://www.lbehelpdesk.com/patch/web/history.txthttp://www.osvdb.org/8181http://www.securityfocus.com/bid/10773https://exchange.xforce.ibmcloud.com/vulnerabilities/16779