Vulnerabilities (CVE)

Filtered by vendor Yellowswordfish Subscribe
Filtered by product Simple Forum
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-7040 2 Wordpress, Yellowswordfish 2 Wordpress, Simple Forum 2024-02-28 7.5 HIGH N/A
SQL injection vulnerability in ahah/sf-profile.php in the Yellow Swordfish Simple Forum module for Wordpress allows remote attackers to execute arbitrary SQL commands via the u parameter. NOTE: this issue was disclosed by an unreliable researcher, so the details might be incorrect.