CVE-2024-48465
- EPSS 0.13%
- Veröffentlicht 28.10.2024 20:15:06
- Zuletzt bearbeitet 30.10.2024 18:35:15
The MRBS version 1.5.0 has an SQL injection vulnerability in the edit_entry_handler.php file, specifically in the rooms%5B%5D parameter
CVE-2008-4620
- EPSS 0.42%
- Veröffentlicht 21.10.2008 01:18:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in Meeting Room Booking System (MRBS) before 1.4 allows remote attackers to execute arbitrary SQL commands via the area parameter to (1) month.php, and possibly (2) day.php and (3) week.php.
CVE-2008-3565
- EPSS 0.23%
- Veröffentlicht 10.08.2008 20:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple cross-site scripting (XSS) vulnerabilities in Meeting Room Booking System (MRBS) 1.2.6 allow remote attackers to inject arbitrary web script or HTML via the area parameter to (1) day.php, (2) week.php, (3) month.php, (4) search.php, (5) repo...
CVE-2007-6538
- EPSS 1.1%
- Veröffentlicht 27.12.2007 23:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
SQL injection vulnerability in ing/blocks/mrbs/code/web/view_entry.php in the MRBS plugin for Moodle allows remote attackers to execute arbitrary SQL commands via the id parameter.