~wgrant/ubuntu-cve-tracker/main

« back to all changes in this revision

Viewing changes to retired/CVE-2005-3949

  • Committer: Kees Cook
  • Date: 2008-09-19 21:55:36 UTC
  • Revision ID: kees.cook@canonical.com-20080919215536-xv2fttw2hoozmih4
update all Publication Dates

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
1
Candidate: CVE-2005-3949
2
2
References:
3
3
Description:
 
4
 Multiple SQL injection vulnerabilities in WebCalendar 1.0.1 allow remote
 
5
 attackers to execute arbitrary SQL commands via the (1) startid parameter
 
6
 to activity_log.php, (2) startid parameter to admin_handler.php, (3)
 
7
 template parameter to edit_template.php, and (4) multiple parameters to
 
8
 export_handler.php.
4
9
Ubuntu-Description:
5
10
Notes:
6
11
Bugs: