Website Auction Marketplace 2.0.5 has SQL Injection via the search.php cat_id parameter.
CVSS 2.0
Severity: HIGH
Problem Type: CWE-89,
Products Affected