* http://wiki.consolibyte.com/wiki/doku.php/quickbooks_integration_php_consolibyte_webconnector_quickstart * http://wiki.consolibyte.com/wiki/doku.php/quickbooks ...
The application has no authentication mechanism and passes user-supplied HTTP parameters directly into deprecated mysql_query () calls via string concatenation, without sanitization, escaping, or ...