Dzcp maintains a narrowly scoped web-based clan management portal product that exhibits a durable signal around data-exposure and code-injection weaknesses, including sensitive-information leakage, SQL injection, and improper code-generation controls. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dzcp over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-5000HIGH SQL injection vulnerability in jokes/index.php in the Witze addon 0.9 for deV!L'z Clanportal allows remote attackers to execute arbitrary SQL commands via the id parameter in a sho | Sep 19, 2012 | 7.5 | 34 | NO | YES |
CVE-2010-0966MEDIUM PHP remote file inclusion vulnerability in inc/config.php in deV!L`z Clanportal (DZCP) 1.5.2, when register_globals is enabled, allows remote attackers to execute arbitrary PHP cod | Mar 16, 2010 | 6.8 | 27 | NO | YES |
CVE-2007-1167MEDIUM inc/filebrowser/browser.php in deV!L`z Clanportal (DZCP) 1.4.5 and earlier allows remote attackers to obtain MySQL data via the inc/mysql.php value of the file parameter. | Mar 2, 2007 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dzcp.
Media articles that mention a CVE ID that affects a product developed by Dzcp — matched by CVE ID, not by vendor name.