CVE-2006-1422

PHP Booking Calendar <1.0c - SQL Injection

Title source: llm

Description

SQL injection vulnerability in details_view.php in PHP Booking Calendar 1.0c and earlier allows remote attackers to execute arbitrary SQL commands via the event_id parameter.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Stack · perlwebappsphp
https://www.exploit-db.com/exploits/5696
exploitdb WORKING POC VERIFIED
by undefined1_ · textwebappsphp
https://www.exploit-db.com/exploits/1610

Scores

EPSS 0.0057
EPSS Percentile 68.2%

Classification

Status draft

Affected Products (1)

jjwwebdesign/phpbookingcalendar < 1.0c

Timeline

Published Mar 28, 2006
Tracked Since Feb 18, 2026