On Sun, Oct 23, 2011 at 01:06:07AM +0200, muuratsalo experimental hack lab wrote: > jara 1.6 sql injection vulnerability > > download http://sourceforge.net/projects/jara/files/v1.6/jarav16.zip > > author muuratsalo > contact muuratsalo[at]gmail.com > > exploit > http://localhost/jara/view.php?id=[SQL Injection] Has this been fixed? What was vendor reply? Best regards, Henri Salo