SQL injection vulnerability in rating.php in New 5 star Rating 1.0 allows remote attackers to execute arbitrary SQL commands via the det parameter.Referenceshttp://www.exploit-db.com/exploits/9499