info
discussion
exploit
solution
references
PHPCatalog ID Parameter SQL Injection Vulnerability
The following proof of concept has been supplied:
Privacy Statement
Copyright 2010, SecurityFocus