Multiple SQL injection vulnerabilities in Jetik Emlak Sistem A (ESA) 2.0 allow remote attackers to execute arbitrary SQL commands via the KayitNo parameter to (1) diger.php and (2) sayfalar.php.Referenceshttp://secunia.com/advisories/32008https://www.exploit-db.com/exploits/6549https://exchange.xforce.ibmcloud.com/vulnerabilities/45391http://www.securityfocus.com/bid/31352