VYPR

Basic

by Calendarix

CVEs (2)

  • CVE-2008-2429Nov 26, 2008
    risk 0.00cvss epss 0.01

    Multiple SQL injection vulnerabilities in Calendarix Basic 0.8.20071118 allow remote attackers to execute arbitrary SQL commands via (1) the catsearch parameter to cal_search.php or (2) the catview parameter to cal_cat.php. NOTE: vector 1 might overlap CVE-2007-3183.3, and…

  • CVE-2006-3094Jun 19, 2006
    risk 0.00cvss epss 0.02

    Multiple SQL injection vulnerabilities in Calendarix Basic 0.7.20060401 and earlier, with magic_quotes_gpc disabled, allow remote attackers to execute arbitrary SQL commands via the id parameter in (1) cal_event.php and (2) cal_popup.php.