NexusPHP 1.5.beta5.20120707 has SQL Injection in forummanage.php via the sort parameter in an addforum action.Referenceshttps://github.com/gitsucce/nexusphp/blob/master/nexusphp.md