YaBB SE versions 1.54 and 1.55 are susceptible to a SQL injection vulnerability that allows a remote attacker to execute malicious SQL statements on the database remotely.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/32699/yabbSE2.txt
Source: https://packetstormsecurity.com/files/32699/yabbSE2.txt.html

