SQL injection vulnerability in view_event.php in TotalCalendar 2.402 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Totalcalendar |
Sweetphp |
* |
2.402 (including) |
References