The BearDev JoomSport plugin 3.3 for WordPress allows SQL injection to steal, modify, or delete database information via the joomsport_season/new-yorkers/?action=playerlist sid parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
beardev joomsport 3.3 |