Secunia Security Advisory – Janek Vind has discovered some vulnerabilities in Phorum, which can be exploited by malicious users to conduct SQL injection attacks and to gain escalated privileges, and by malicious people to conduct cross-site scripting and cross-site request forgery attacks.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/56111/sa24932.txt
Source: https://packetstormsecurity.com/files/56111/Secunia-Security-Advisory-24932.html

