cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,poc,trended,trended_no_1,published,trended_score CVE-2013-1852,https://securityvulnerability.io/vulnerability/CVE-2013-1852,,SQL injection vulnerability in leaguemanager.php in the LeagueManager plugin before 3.8.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the league_id parameter in the leaguemanager-export page to wp-admin/admin.php.,Wordpress,Leaguemanager,,,0.0007900000200606883,false,,false,false,false,,false,false,2014-02-05T15:00:00.000Z,0 CVE-2012-2912,https://securityvulnerability.io/vulnerability/CVE-2012-2912,,Multiple cross-site scripting (XSS) vulnerabilities in the LeagueManager plugin 3.7 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) group parameter in the show-league page or (2) season parameter in the team page to wp-admin/admin.php.,Wordpress,Leaguemanager,,,0.0024300001095980406,false,,false,false,false,,false,false,2012-05-21T18:00:00.000Z,0