SQL injection vulnerability in viewnews.asp in Todd Woolums ASP News Management 2.2 allows remote attackers to execute arbitrary SQL commands via the newsID parameter.Referenceshttps://www.exploit-db.com/exploits/5781https://exchange.xforce.ibmcloud.com/vulnerabilities/42964http://securityreason.com/securityalert/4658http://www.securityfocus.com/bid/29638http://secunia.com/advisories/30593