SQL injection vulnerability in a third party extension to TYPO3 allows remote attackers to execute arbitrary SQL commands via the category_uid parameter.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2005-0659
http://secunia.com/advisories/14465
http://marc.info/?l=bugtraq&m=110996536620069&w=2