SQL injection vulnerability in browsecats.php in E-Php CMS allows remote attackers to execute arbitrary SQL commands via the cid parameter.Referenceshttp://www.securityfocus.com/bid/33470http://secunia.com/advisories/31923https://exchange.xforce.ibmcloud.com/vulnerabilities/48297http://packetstormsecurity.org/0901-exploits/ephpcmscid-sql.txt