SQL injection vulnerability in cat_products.php in SoftBiz Dating Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: this might overlap CVE-2006-3271.4.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/52158http://packetstormsecurity.org/0907-exploits/softbizdating-sql.txthttp://www.securityfocus.com/bid/35896