32 lines
1.0 KiB
JSON
Raw Normal View History

{
"id": "CVE-2023-46700",
"sourceIdentifier": "vultures@jpcert.or.jp",
"published": "2023-11-20T05:15:08.823",
"lastModified": "2023-11-20T05:15:08.823",
"vulnStatus": "Received",
"descriptions": [
{
"lang": "en",
"value": "SQL injection vulnerability in LuxCal Web Calendar prior to 5.2.4M (MySQL version) and LuxCal Web Calendar prior to 5.2.4L (SQLite version) allows a remote unauthenticated attacker to execute an arbitrary SQL command by sending a crafted request, and obtain or alter information stored in the database."
}
],
"metrics": {},
"references": [
{
"url": "https://jvn.jp/en/jp/JVN15005948/",
"source": "vultures@jpcert.or.jp"
},
{
"url": "https://www.luxsoft.eu/",
"source": "vultures@jpcert.or.jp"
},
{
"url": "https://www.luxsoft.eu/?download",
"source": "vultures@jpcert.or.jp"
},
{
"url": "https://www.luxsoft.eu/lcforum/viewtopic.php?id=476",
"source": "vultures@jpcert.or.jp"
}
]
}