Vulnerabilities > Full Revolution

DATE CVE VULNERABILITY TITLE RISK
2006-06-06 CVE-2006-2848 Remote Security Bypass vulnerability in Full Revolution Aspweblinks 2.0
links.asp in aspWebLinks 2.0 allows remote attackers to change the administrative password, possibly via a direct request with a modified txtAdministrativePassword field.
network
low complexity
full-revolution
5.0
2006-06-06 CVE-2006-2847 SQL Injection vulnerability in Full Revolution Aspweblinks 2.0
SQL injection vulnerability in links.asp in aspWebLinks 2.0 allows remote attackers to execute arbitrary SQL commands via the linkID parameter.
network
low complexity
full-revolution
7.5
2004-12-31 CVE-2004-1552 SQL Injection vulnerability in Full Revolution Aspwebcalendar 4.5
SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp.
network
low complexity
full-revolution
7.5