SQL injection vulnerability in main.php in paBugs 2.0 Beta 3 and earlier allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php.Referenceshttps://www.exploit-db.com/exploits/4253https://exchange.xforce.ibmcloud.com/vulnerabilities/35758http://www.securityfocus.com/bid/25178