SQL injection vulnerability in login.php in Pre Lecture Exercises (PLEs) CMS 1.0 beta 4.2 allows remote attackers to execute arbitrary SQL commands via the school parameter.Referenceshttp://www.securityfocus.com/bid/33524https://www.exploit-db.com/exploits/7917