SQL injection vulnerability in member.php in 6ALBlog allows remote malicious users to execute arbitrary SQL commands via the newsid parameter.
gorani network 6alblog