SQL injection vulnerability in view_event.php in TotalCalendar 2.402 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
sweetphp totalcalendar |