CVE Vulnerabilities

CVE-2006-0206

Published: Jan 13, 2006 | Modified: Jul 20, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Eval injection vulnerability in Light Weight Calendar (LWC) 1.0 (20040909) and earlier allows remote attackers to execute arbitrary PHP code via the date parameter in cal.php, which is included by index.php.

Affected Software

Name Vendor Start Version End Version
Light_weight_calendar Light_weight_calendar 1.0 (including) 1.0 (including)

References