SQL Injection vulnerability in Tianchoy Blog v.1.8.8 allows a remote malicious user to obtain sensitive information via the id parameter in the login.php
tianchoy blog 1.8.8