Vulnerabilities > CVE-2006-1252 - Unspecified vulnerability in Light Weight Calendar Light Weight Calendar 1.0

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
light-weight-calendar
exploit available

Summary

Eval injection vulnerability in cal.php in Light Weight Calendar (LWC) 1.0 allows remote attackers to execute arbitrary PHP code via the date parameter to index.php.

Vulnerable Configurations

Part Description Count
Application
Light_Weight_Calendar
1

Exploit-Db

descriptionLight Weight Calendar 1.x (date) Remote Code Execution Vulnerability. CVE-2006-0206,CVE-2006-1252. Webapps exploit for php platform
fileexploits/php/webapps/1570.pl
idEDB-ID:1570
last seen2016-01-31
modified2006-03-09
platformphp
port
published2006-03-09
reporterHessam-x
sourcehttps://www.exploit-db.com/download/1570/
titleLight Weight Calendar 1.x - date Remote Code Execution Vulnerability
typewebapps