SQL injection vulnerability in contact.php in My Little Forum allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2007-2942.
| Software | From | Fixed in |
|---|---|---|
| mylittleforum / my_little_forum | 2.1.1 | 2.1.1.x |
| mylittleforum / my_little_forum | 2.2.3 | 2.2.3.x |
| mylittleforum / my_little_forum | 2.2.2 | 2.2.2.x |
| mylittleforum / my_little_forum | 1.7.6 | 1.7.6.x |
| mylittleforum / my_little_forum | 2.1.2 | 2.1.2.x |
| mylittleforum / my_little_forum | 2.2 | 2.2.x |
| mylittleforum / my_little_forum | 2.1.4 | 2.1.4.x |
| mylittleforum / my_little_forum | 2.2.1 | 2.2.1.x |
| mylittleforum / my_little_forum | 2.1.3 | 2.1.3.x |
| mylittleforum / my_little_forum | 2.0.2 | 2.0.2.x |