VYPR

Tiny Event Module

by XOOPS

CVEs (2)

  • CVE-2008-0937Feb 25, 2008
    risk 0.03cvss —epss 0.01

    SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 module for XOOPS allows remote attackers to execute arbitrary SQL commands via the id parameter in a print action, a different vector than CVE-2007-1811.

  • CVE-2007-1811Apr 2, 2007
    risk 0.03cvss —epss 0.01

    SQL injection vulnerability in index.php in the Tiny Event (tinyevent) 1.01 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter in a show action.