SQL injection vulnerability in newsroom.asp in ASPilot Pilot Cart 7.3 allows remote attackers to execute arbitrary SQL commands via the specific parameter.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/63217http://securityreason.com/securityalert/8428http://packetstormsecurity.org/files/view/95777/aspilotpilotcart-sql.txthttp://www.exploit-db.com/exploits/15497