SQL injection vulnerability in Types.asp in Enthrallweb eCars 1.0 allows remote attackers to execute arbitrary SQL commands via the Type_id parameter.Referenceshttp://secunia.com/advisories/23566http://osvdb.org/31681http://www.securityfocus.com/bid/21748http://www.vupen.com/english/advisories/2006/5153https://www.exploit-db.com/exploits/2989