XOOPS Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2008-0611
SQL injection vulnerability in rmgs/images.php in the RMSOFT Gallery System 2.0 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter.