Vulnerabilities > Roman Bogorodskiy

DATE CVE VULNERABILITY TITLE RISK
2009-03-12 CVE-2009-0882 SQL Injection vulnerability in Roman Bogorodskiy Nforum 1.5
Multiple SQL injection vulnerabilities in nForum 1.5 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to showtheme.php and the (2) user parameter to userinfo.php.
network
low complexity
roman-bogorodskiy CWE-89
7.5