Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2005-3984

Опубликовано: 04 дек. 2005
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:webcalendar:webcalendar:1.0.1:*:*:*:*:*:*:*

EPSS

Процентиль: 74%
0.00862
Низкий

7.5 High

CVSS2

Дефекты

CWE-89

Связанные уязвимости

ubuntu
почти 20 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

debian
почти 20 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attacke ...

github
больше 3 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

EPSS

Процентиль: 74%
0.00862
Низкий

7.5 High

CVSS2

Дефекты

CWE-89