SQL injection vulnerability in counterchaos.php in CounterChaos 0.48c and earlier allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/28222http://securityreason.com/securityalert/1350http://www.frsirt.com/english/reference/17541http://archives.neohapsis.com/archives/bugtraq/2006-08/0080.htmlhttp://www.vupen.com/english/advisories/2006/3153http://www.securityfocus.com/bid/19344http://secunia.com/advisories/21356