Vulnerabilities (CVE)

Filtered by vendor Haudenschilt Subscribe
Filtered by product Battlenet Clan Script
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-3556 1 Haudenschilt 1 Battlenet Clan Script 2024-02-04 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in index.php in Battle.net Clan Script 1.5.2 allow remote attackers to execute arbitrary SQL commands via the (1) showmember parameter in a members action and the (2) thread parameter in a board action. NOTE: vector 1 might be the same as CVE-2008-2522.
CVE-2008-2522 1 Haudenschilt 1 Battlenet Clan Script 2024-02-04 6.8 MEDIUM N/A
SQL injection vulnerability in members.php in Battle.net Clan Script for PHP 1.5.3 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the showmember parameter in a members action.