Parece ser que la vulnerabilidad la tienen en el portal e107.
DESCRIPTION:
A vulnerability has been discovered in e107, which can be exploited by malicious people to conduct cross-site request forgery attacks.
The vulnerability is confirmed in version 0.7.24 and Forum plugin version 1.2. Other versions may also be affected.
NOTE: Additionally, a SQL injection vulnerability exists in e107_plugins/forum/forum_admin.php, which is accessible to administrative users only, but can also be exploited via a cross-site request forgery attack.
SOLUTION:
Do not browse untrusted sites or follow untrusted links while being logged-in to the application.