Vulnerabilities > CVE-2004-1914

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

SQL injection vulnerability in modules.php in NukeCalendar 1.1.a, as used in PHP-Nuke, allows remote attackers to execute arbitrary SQL commands via the eid parameter.

Vulnerable Configurations

Part Description Count
Application
Francisco_Burzi
1
Application
Shiba-Design
1

Exploit-Db

descriptionNukeCalendar 1.1 .a eid Parameter SQL Injection. CVE-2004-1914. Webapps exploit for php platform
idEDB-ID:23933
last seen2016-02-02
modified2004-04-08
published2004-04-08
reporterJanek Vind
sourcehttps://www.exploit-db.com/download/23933/
titleNukeCalendar 1.1.a - eid Parameter SQL Injection