CVE-2008-4889
04.11.2008, 00:57
SQL injection vulnerability in index.php in deV!L'z Clanportal (DZCP) 1.4.9.6 and earlier allows remote attackers to execute arbitrary SQL commands via the users parameter in an addbuddy operation in a buddys action.
Vendor | Product | Version |
---|---|---|
dev\!l\'s | clanportal | 𝑥 ≤ 1.4.9.6 |
dev\!l\'s | clanportal | 1.2.5 |
dev\!l\'s | clanportal | 1.3.6 |
𝑥
= Vulnerable software versions
References