CVE-2008-6780 (ez_affiliate)
SQL injection vulnerability in directory.php in Scripts for Sites (SFS) SFS EZ Affiliate allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a list action.
URL: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2008-6780