Vulnerabilities > DEV L S > Clanportal

DATE CVE VULNERABILITY TITLE RISK
2008-11-04 CVE-2008-4889 SQL Injection vulnerability in Dev!L'S Clanportal 1.2.5/1.3.6
SQL injection vulnerability in index.php in deV!L'z Clanportal (DZCP) 1.4.9.6 and earlier allows remote attackers to execute arbitrary SQL commands via the users parameter in an addbuddy operation in a buddys action.
network
low complexity
dev-l-s CWE-89
7.5