SQL injection vulnerability in newsarchive.php in PHPeasyblog (formerly phpeasynews) 1.13 RC2 and earlier allows remote attackers to execute arbitrary SQL commands via the post parameter.Referenceshttp://www.securityfocus.com/bid/29735https://exchange.xforce.ibmcloud.com/vulnerabilities/43104https://www.exploit-db.com/exploits/5820