Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.57010
Category:CGI abuses
Title:BosDates Multiple SQL Injection Vulnerabilities
Summary:NOSUMMARY
Description:Description:

The remote version of BosDates, according to its version
number, is vulnerable to multiple SQL injection attacks via
the 'year' and 'category' parameters in the 'calendar.php'
script.

Versions up to and including 4.0 are vulnerable.

Solution : Upgrade to a later version.

Risk factor : High

CVSS Score:
7.5

Cross-Ref: BugTraq ID: 15632
Common Vulnerability Exposure (CVE) ID: CVE-2005-3911
http://www.securityfocus.com/bid/15632
http://pridels0.blogspot.com/2005/11/bosdates-v40-sql-vuln.html
http://www.osvdb.org/21173
http://secunia.com/advisories/17752
http://www.vupen.com/english/advisories/2005/2632
CopyrightCopyright (c) 2006 E-Soft Inc. http://www.securityspace.com

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.