Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-3984

Опубликовано: 04 дек. 2005
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

РелизСтатусПримечание
dapper

released

1.0.2-2.1
devel

released

1.0.2-2.1
edgy

released

1.0.2-2.1
feisty

DNE

upstream

needs-triage

Показывать по

Ссылки на источники

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 20 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

debian
больше 20 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attacke ...

github
больше 4 лет назад

SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php vector is already covered by CVE-2005-3949.

7.5 High

CVSS2