PHP remote file inclusion vulnerability in calendar.php in Visual Events Calendar 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the cfg_dir parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Visual_events_calendar | Web-scripts | 1.1 (including) | 1.1 (including) |