Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-3984

Опубликовано: 04 дек. 2005
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

РелизСтатусПримечание
dapper

released

1.0.2-2.1
devel

released

1.0.2-2.1
edgy

released

1.0.2-2.1
feisty

DNE

upstream

needs-triage

Показывать по

Ссылки на источники

EPSS

Процентиль: 74%
0.00862
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
почти 20 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

debian
почти 20 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attacke ...

github
больше 3 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

EPSS

Процентиль: 74%
0.00862
Низкий

7.5 High

CVSS2