CVE-2008-3452
04.08.2008, 19:41
SQL injection vulnerability in the Calendar module in eNdonesia 8.4 allows remote attackers to execute arbitrary SQL commands via the loc_id parameter in a list_events action to mod.php.
Vendor | Product | Version |
---|---|---|
endonesia | calendar_module | 8.4 |
endonesia | endonesia | 8.4 |
𝑥
= Vulnerable software versions
References