← Back

Aaronoutpost

aaronoutpost

4 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (4)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Aaronoutpost
1Asp Inline Corporate Calendar
Apr 23, 2026
Jun 27, 2009
N/A· v4
N/A· v3
7.5 HIGH· v2
SQL injection vulnerability in active_appointments.asp in ASP Inline Corporate Calendar allows remote attackers to execute arbitrary SQL commands via the sortby parameter. NOTE: the provenance of this information is unk...Show more
SQL injection vulnerability in active_appointments.asp in ASP Inline Corporate Calendar allows remote attackers to execute arbitrary SQL commands via the sortby parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.Show less
1Aaronoutpost
1Asp Inline Corporate Calendar
Apr 23, 2026
Jun 27, 2009
N/A· v4
N/A· v3
6.8 MEDIUM· v2
SQL injection vulnerability in active_appointments.asp in ASP Inline Corporate Calendar allows remote attackers to execute arbitrary SQL commands via the order parameter.
1Aaronoutpost
1Asp Inline Corporate Calendar
Apr 23, 2026
Jun 27, 2009
N/A· v4
N/A· v3
4.3 MEDIUM· v2
Cross-site scripting (XSS) vulnerability in search.asp in ASP Inline Corporate Calendar allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.
1Aaronoutpost
1Asp Inline Corporate Calendar
Apr 16, 2026
May 11, 2005
N/A· v4
N/A· v3
7.5 HIGH· v2
Multiple SQL injection vulnerabilities in Aaron Outpost ASP Inline Corporate Calendar allow remote attackers to execute arbitrary SQL commands via the Event_ID parameter to (1) defer.asp or (2) details.asp.