product:Infinitytechs Restaurants CM 
bug:injection sql
risk:medium

injection sql:
/rating.asp?id='[sql]
/meal_rest.asp?mealid='[sql]
/res_details.asp?resid='[sql]

laurent gaffi & benjamin moss
http://s-a-p.ca/
contact: saps.audit (at) gmail (dot) com [email concealed]