SQL injection vulnerability in index.php in AlstraSoft Web Email Script Enterprise (ESE) allows remote attackers to execute arbitrary SQL commands via the id parameter in a directory action.
- http://securityreason.com/securityalert/4824
- https://www.exploit-db.com/exploits/7596
No PoCs found on GitHub currently.