SQL injection vulnerability in follow.php in Phorum 5.0.12 and previous versions allows remote authenticated users to execute arbitrary SQL command via the forum_id parameter.