Invision Gallery version 1.0.1 fails to properly validate user supplied input allowing for various SQL injection attacks.