Vulnerabilities > Wikidforum Project

DATE CVE VULNERABILITY TITLE RISK
2018-10-09 CVE-2018-18075 SQL Injection vulnerability in Wikidforum Project Wikidforum 2.20
WikidForum 2.20 has SQL Injection via the rpc.php parent_post_id or num_records parameter, or the index.php?action=search select_sort parameter.
network
low complexity
wikidforum-project CWE-89
critical
9.8