Le-show medical practice management system from Le-yan has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.

OWASP Cheat Sheet Series

Website with the collection of all the cheat sheets of the project.