WowBB view_user.php SQL Injection Flaw

Summary
The remote web server contains a PHP script that is affected by a SQL injection flaw. Description : The remote host is running WowBB, a web-based forum written in PHP. The remote version of this software is vulnerable to SQL injection attacks through the script 'view_user.php'. A malicious user can exploit this issue to manipulate database queries, resulting in disclosure of sensitive information, attacks against the underlying database, and the like.
Solution
Unknown at this time.
References