Application: WP-Forum (plugin for WordPress)
Affected Version: 1.7.4.
Vendor’s URL: http://www.fahlstad.se/wp-plugins/wp-forum/
Bug Type: SQL Injection
Risk Level: Critical
Solution:
Edit the source code to ensure that input is properly sanitised.
