http://itsecteam.com/en/projects/project1_page2.htm
Download the Free Version (Ofc its Virus Free just scan it over @ virustotal)

and run the pages looking like .php?id=xxx it

if vulnerable it will gain get access to your DB after few step. Then You Report that bug to your software provider and if custom script just ask for dev to fix it