Parameters count_fieldname, url_fieldname, url are not properly sanitized
before being used in SQL query. This can be used to make any SQL query by
injecting arbitrary SQL code.
--------------PoC/Exploit----------------------
Available at: http://evuln.com/vulns/105/exploit.html
--------------Solution---------------------
No Patch available.
If you have additional information or notice any errors regarding this security advisory, please use contact form or email us at info()securityreason()com.