SQL injection vulnerability in memberlist.php in WSN Forum 1.21 allows remote attackers to execute arbitrary SQL commands via the id parameter in a profile action.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Wsn_forum | Wsn_forum | 1.21 (including) | 1.21 (including) |