Security Advisory

CVE-2008-2429

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-11-26 01:00:00
Last updated 2024-09-17 00:30:34
Assigner flexera
CVSS score not scored
State PUBLISHED

Description

Multiple SQL injection vulnerabilities in Calendarix Basic 0.8.20071118 allow remote attackers to execute arbitrary SQL commands via (1) the catsearch parameter to cal_search.php or (2) the catview parameter to cal_cat.php. NOTE: vector 1 might overlap CVE-2007-3183.3, and vector 2 might overlap CVE-2005-1865.2.