SQL injection vulnerability in forum/search.asp in Web Wiz Forums allows remote attackers to execute arbitrary SQL commands via the KW parameter.
https://exchange.xforce.ibmcloud.com/vulnerabilities/29898
http://www.securityfocus.com/archive/1/450034/100/0/threaded