SQL injection vulnerability in profile.php in WebLeague 2.2.0 allows remote malicious users to execute arbitrary SQL commands via the name parameter.
worms-league webleague 2.2.0