LuM Member

2 exploits Active since Nov 2011
CVE-2010-5007 EXPLOITDB text WRITEUP
UTStats Beta <4 - XSS
Cross-site scripting (XSS) vulnerability in pages/match_report.php in UTStats Beta 4 and earlier allows remote attackers to inject arbitrary web script or HTML via the mid parameter.
CVE-2010-5009 EXPLOITDB text WRITEUP
UTStats Beta <4 - SQL Injection
SQL injection vulnerability in index.php in UTStats Beta 4 and earlier allows remote attackers to execute arbitrary SQL commands via the pid parameter in a matchp action.