Vulnerabilities > CVE-2007-4108 - Unspecified vulnerability in Codewidgets Online Event Registration Template
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
SQL injection vulnerability in sign_in.aspx in WebEvents (Online Event Registration Template) allows remote attackers to execute arbitrary SQL commands via the Password parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
References
- http://outlaw.aria-security.info/?p=10
- http://outlaw.aria-security.info/?p=10
- http://secunia.com/advisories/26252
- http://secunia.com/advisories/26252
- http://securityreason.com/securityalert/2948
- http://securityreason.com/securityalert/2948
- http://www.securityfocus.com/archive/1/474931/100/0/threaded
- http://www.securityfocus.com/archive/1/474931/100/0/threaded
- http://www.securityfocus.com/archive/1/474933/100/0/threaded
- http://www.securityfocus.com/archive/1/474933/100/0/threaded
- http://www.securityfocus.com/bid/25111
- http://www.securityfocus.com/bid/25111
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35671
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35671