SQL injection vulnerability in cn_users.php in CzarNews 1.20 and earlier allows remote attackers to execute arbitrary SQL commands via a recook cookie.
- http://securityreason.com/securityalert/4306
- https://www.exploit-db.com/exploits/6462
No PoCs found on GitHub currently.