login.php in ACal Calendar Project 2.2.5 allows remote attackers to bypass authentication by setting the ACalAuthenticate cookie variable to inside.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Calendar_project | Acal | 2.2.5 (including) | 2.2.5 (including) |