Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3452 (eNdonesia, calendar_module)

BugsAlert Home > CVE-2008-3452 (eNdonesia, calendar_module)
 
 

SQL injection vulnerability in the Calendar module in eNdonesia 8.4 allows remote attackers to execute arbitrary SQL commands via the loc_id parameter in a list_events action to mod.php.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3452

Learn more about CVE-2008-3452 (eNdonesia, calendar_module)
 
Tags: cve-2008-3452 endonesia calendar module

Related Items

      CVE-2008-4375 (availscript_classmate_script)

      CVE-2008-2593 (oracle_portal_component, Application Server 10g)

      Vuln: Confixx Saveserver.PHP Remote File Include Vulnerability

      Fedora update for nasm

      FrSIRT - Mandriva Security Update Fixes Wireshark Denial of Service Issues

      CVE-2008-3451 (PhpWebGallery)

      CVE-2008-0222 (FileManager)

 

Pixel