SQL injection vulnerability in Content Management System WEBjump! allows remote attackers to execute arbitrary SQL commands via the id parameter to (1) portfolio_genre.php and (2) news_id.php.Referenceshttp://www.securityfocus.com/bid/34058http://www.exploit-db.com/exploits/8188