Exploiting this issue may allow an attacker to compromise the application and the underlying system; other attacks are also possible.
Nodesforum versions 1.059 and prior are vulnerable.
Vendor Status:
Currently we are not aware of any vendor-supplied patches