SQL injection vulnerability in view_user.php in WowBB 1.6, 1.61, and 1.62 allows remote attackers to execute arbitrary SQL commands via the sort_by parameter.Referenceshttps://exchange.xforce.ibmcloud.com/vulnerabilities/20565http://www.securityfocus.com/bid/13569http://www.osvdb.org/16543http://secunia.com/advisories/12843http://marc.info/?l=bugtraq&m=111575905112831&w=2