CVE-2009-4973
EUVD-2009-493528.07.2010, 14:43
SQL injection vulnerability in rss.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary SQL commands via the selectedCal parameter in a SwitchCal action.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| sweetphp | totalcalendar | 2.4 |
𝑥
= Vulnerable software versions