SQL injection vulnerability in Zen Cart before 1.2.7 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.Referenceshttp://www.vupen.com/english/advisories/2006/0546http://www.osvdb.org/23110http://secunia.com/advisories/18801https://exchange.xforce.ibmcloud.com/vulnerabilities/24701http://sourceforge.net/project/shownotes.php?release_id=392886