High
CVSS 7.5
Overview
SQL injection vulnerability in the MDForum module 2.x through 2.07 for MAXdev MDPro allows remote attackers to execute arbitrary SQL commands via the c parameter to index.php.
SQL injection vulnerability in the MDForum module 2.x through 2.07 for MAXdev MD...
SQL injection vulnerability in the MDForum module 2.x through 2.07 for MAXdev MDPro allows remote attackers to execute arbitrary SQL commands via the c parameter to index.php.
This vulnerability is rated 🟠 HIGH.
Recommended actions: