SQL injection vulnerability in jax_calendar.php in Jax Calendar 1.34 allows remote attackers to execute arbitrary SQL commands via the (1) cal_id parameter, and possibly the (2) Y and (3) m parameters.
References
Configurations
Information
Published : 2005-12-05 03:03
Updated : 2008-09-19 21:41
NVD link : CVE-2005-4008
Mitre link : CVE-2005-4008
JSON object : View
CWE
Products Affected
jax_calendar
- jax_calendar