A vulnerability was found in Rwscripts.com Rw Download Lite 2.0.3. It has been classified as critical. Affected is the function rw::download of the file UPLOAD/index.php. The manipulation of the argument cid leads to sql injection.
This vulnerability is traded as CVE-2007-4845. It is possible to launch the attack remotely. Furthermore, there is an exploit available.