SQL injection vulnerability in players-detail.php in UltraStats 0.2.136, 0.2.140, and 0.2.142 allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ultrastats ultrastats 0.2.142 |
||
ultrastats ultrastats 0.2.136 |
||
ultrastats ultrastats 0.2.140 |