SQL injection vulnerability in artreplydelete.asp in ASP EDGE 1.3a and earlier allows remote attackers to execute arbitrary SQL commands via a username cookie, a different vector than CVE-2007-0560.Referenceshttp://osvdb.org/36634http://www.vupen.com/english/advisories/2007/0341