Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Offl Subscribe
Filtered by product Online Fantasy Football League
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-2890 1 Offl 1 Online Fantasy Football League 2017-10-18 7.5 HIGH N/A
Multiple SQL injection vulnerabilities in Online Fantasy Football League (OFFL) 0.2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) fflteam_id parameter to teams.php, the (2) league_id parameter to leagues.php, and the (3) player_id parameter to players.php.