VYPR

Mforum

by Marcioforum

CVEs (1)

  • CVE-2008-3191Jul 16, 2008
    risk 0.03cvss epss 0.01

    Multiple SQL injection vulnerabilities in usercp.php in mForum 0.1a, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) City, (2) Interest, (3) Email, (4) Icq, (5) msn, or (6) Yahoo Messenger field in an edit_profile action.