CVE-2002-1879: Lokwa Lokwabb

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

SQL injection vulnerability in LokwaBB 1.2.2 allows remote attackers to execute arbitrary SQL commands via the (1) member parameter to member.php or (2) loser parameter to misc.php.

Affected products

  • Lokwa Lokwabb: version 1.2.1 only

Published 2002-12-31. Last modified 2026-06-16.