Unrated severityNVD Advisory· Published Jun 19, 2006· Updated Apr 16, 2026
CVE-2006-3094
CVE-2006-3094
Description
Multiple SQL injection vulnerabilities in Calendarix Basic 0.7.20060401 and earlier, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) cal_event.php and (2) cal_popup.php.
Affected products
1- cpe:2.3:a:vincent_hor:calendarix_basic:*:*:*:*:*:*:*:*Range: <=0.7.2006-04-01
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7News mentions
0No linked articles in our index yet.