cpe:/a:commodityrentals:vacation_rental_software CVE-2010-0763 2010-03-02T13:30:00.947-05:00 2010-03-03T00:00:00.000-05:00 7.5 NETWORK LOW NONE PARTIAL PARTIAL PARTIAL http://nvd.nist.gov 2010-03-03T11:01:00.000-05:00 EXPLOIT-DB 11410 BID 38208 SECUNIA 38552 SQL injection vulnerability in index.php in CommodityRentals Vacation Rental Software allows remote attackers to execute arbitrary SQL commands via the rental_id parameter in a CalendarView action.