Full title: web@all CMS 2.0 (_order) SQL Injection / Cross Site Scripting Vulnerability Category: web applications Platform: php # 0day.today @ http://0day.today/