Multiple SQL injection vulnerabilities in Ixprim 1.2 allow remote attackers to execute arbitrary SQL commands via the story_id parameter to ixm_ixpnews.php, and unspecified other vectors.Referenceshttp://www.securityfocus.com/archive/1/455084/100/0/threadedhttp://www.vupen.com/english/advisories/2006/5133http://www.securityfocus.com/bid/21710http://secunia.com/advisories/23453http://acid-root.new.fr/poc/16061221.txthttp://securityreason.com/securityalert/2073