SQL injection vulnerability in CampusNewsDetails.asp in Dynamic Dataworx NuSchool 1.0 allows remote attackers to execute arbitrary SQL commands via the NewsID parameter.Referenceshttps://www.exploit-db.com/exploits/2757http://www.securityfocus.com/archive/1/451336/100/0/threadedhttp://www.securityfocus.com/bid/21006http://securitytracker.com/id?1017217http://www.vupen.com/english/advisories/2006/4475http://securityreason.com/securityalert/1855http://secunia.com/advisories/22830https://exchange.xforce.ibmcloud.com/vulnerabilities/30196