SQL injection vulnerability in frame.php in Rhadrix If-CMS 2.07 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter.
rhadrix if-cms