Creative Management System (CMS) Lite 1.4 allows SQL Injection via the S parameter to index.php.
bekirk creative management system lite 1.4