SQL injection vulnerability in packagedetails.php in iScripts ReserveLogic 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter.Referenceshttp://securityreason.com/securityalert/8487http://www.salvatorefresta.net/files/adv/iScripts%20ReserveLogic%201.0%20SQL%20Injection%20Vulnerability-01072010.txthttp://www.exploit-db.com/exploits/14163http://www.securityfocus.com/archive/1/512137/100/0/threadedhttp://secunia.com/advisories/40435http://packetstormsecurity.org/1007-exploits/reservelogic-sql.txthttps://exchange.xforce.ibmcloud.com/vulnerabilities/59985