Php · Phpkick · CVE-2010-3029
**Name of the Vulnerable Software and Affected Versions**
PHPKick version 0.8
**Description**
The issue allows remote attackers to execute arbitrary SQL commands. This is achieved via the `gameday` parameter in an 'overview' action within the statistics.php file.
**Recommendations**
For PHPKick version 0.8, consider restricting access to the statistics.php file or the `gameday` parameter to minimize the risk of exploitation until a patch is available.