PoC Index

CVE-2004-1552

HIGH 7.5EPSS 4.1%

SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp.

CVSS v2.0
7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS
4.08% chance of exploitation in the next 30 days, 90th percentile
Published
2005-02-20
Updated
2024-08-08

ExploitDB entries (2)

References

Related