Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Yellowswordfish Subscribe
Filtered by product Simple Forum
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-7040 2 Wordpress, Yellowswordfish 2 Wordpress, Simple Forum 2017-08-16 7.5 HIGH N/A
SQL injection vulnerability in ahah/sf-profile.php in the Yellow Swordfish Simple Forum module for Wordpress allows remote attackers to execute arbitrary SQL commands via the u parameter. NOTE: this issue was disclosed by an unreliable researcher, so the details might be incorrect.