Vulnerable Systems:
*ezStats2 for Medal of Honor Warfighter 1.0
Serverviewer 0.62
ezStats2 for Playstation Network 1.10
ezStats for Battlefield 3 0.91
Multiple ezStats products contain a flaw that may lead to unauthorized disclosure of potentially sensitive information to a remote attacker. The issue is triggered when input passed via the 'info' parameter is not properly sanitized before being used in the /admin/apitest.php script.