SQL injection vulnerability in viewcat.php in the WF-Links (wflinks) 1.03 and earlier module for XOOPS allows remote attackers to execute arbitrary SQL commands via the cid parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.025
EPSS Ranking 85.6%