RSS   Vulnerabilities for 'Calendar manager pro'   RSS

2006-05-09
 
CVE-2006-2265

 

 
Cross-site scripting vulnerability in admin/main.asp in Ocean12 Calendar Manager Pro 1.00 allows remote attackers to inject arbitrary web script or HTML via the date parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

 
 
CVE-2006-2264

 

 
Multiple SQL injection vulnerabilities in Ocean12 Calendar Manager Pro 1.00 allow remote attackers to execute arbitrary SQL commands via the (1) date parameter to admin/main.asp, (2) SearchFor parameter to admin/view.asp, or (3) ID parameter to admin/edit.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

 
2005-12-31
 
CVE-2005-4657

 

 
Ocean12 Calendar Manager Pro 1.01 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to /admin/view.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

 
2005-05-02
 
CVE-2005-1223

 

 
Multiple SQL injection vulnerabilities in Ocean12 Calendar manager 1.01 allow remote attackers to execute arbitrary SQL commands via the Admin_id field.

 

 >>> Vendor: Ocean12 technologies 6 Products
Mailing list manager
Membership manager pro
Calendar manager pro
Contact manager
Poll manager
Calendar manager


Copyright 2024, cxsecurity.com

 

Back to Top