SQL Injection Vulnerability in aspWebCalendar Allows Remote Code Execution

SQL Injection Vulnerability in aspWebCalendar Allows Remote Code Execution

CVE-2004-1552 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp.

Learn more about our Web App Pen Testing.