SQL injection vulnerability in index.php in pSys 0.7.0 alpha allows remote attackers to execute arbitrary SQL commands via the shownews parameter.Referenceshttps://www.exploit-db.com/exploits/5745http://securityreason.com/securityalert/4652https://exchange.xforce.ibmcloud.com/vulnerabilities/42916