VYPR

Maxxschedule

by Maxxcode

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-22590.000.01May 9, 2006SQL injection vulnerability in Logon.asp in MaxxSchedule 1.0 allows remote attackers to execute arbitrary SQL commands via the txtLogon parameter.
CVE-2006-22580.000.01May 9, 2006Cross-site scripting (XSS) vulnerability in Logon.asp in MaxxSchedule 1.0 allows remote attackers to inject arbitrary web script or HTML via the Error parameter.