Description
|
|
A vulnerability has been identified in WP-Forum (plugin for WordPress), which could be exploited by malicious users to conduct SQL injection attacks. This issue is caused by an input validation error in the "forum_get_profile()" [forum-functions.php] function when processing the "user" parameter, which could be exploited by attackers to inject arbitrary SQL queries.
|