CMS Auditor Website 1.0 has SQL Injection via the PATH_INFO to /news-detail.
- https://packetstormsecurity.com/files/145293/CMS-Auditor-Website-1.0-SQL-Injection.html
- https://www.exploit-db.com/exploits/43272/
No PoCs found on GitHub currently.