Vulnerabilities (CVE)

Filtered by vendor Full Revolution Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-2848 1 Full Revolution 1 Aspweblinks 2025-04-03 5.0 MEDIUM N/A
links.asp in aspWebLinks 2.0 allows remote attackers to change the administrative password, possibly via a direct request with a modified txtAdministrativePassword field.
CVE-2006-2847 1 Full Revolution 1 Aspweblinks 2025-04-03 7.5 HIGH N/A
SQL injection vulnerability in links.asp in aspWebLinks 2.0 allows remote attackers to execute arbitrary SQL commands via the linkID parameter.
CVE-2004-1552 1 Full Revolution 1 Aspwebcalendar 2025-04-03 7.5 HIGH N/A
SQL injection vulnerability in aspWebCalendar allows remote attackers to execute arbitrary SQL statements via (1) the username field on the login page or (2) the eventid parameter to calendar.asp.