Vulnerabilities > Extcalendar Project

DATE CVE VULNERABILITY TITLE RISK
2007-02-03 CVE-2007-0681 Insufficiently Protected Credentials vulnerability in Extcalendar Project Extcalendar 2
profile.php in ExtCalendar 2 and earlier allows remote attackers to change the passwords of arbitrary users without providing the original password, and possibly perform other unauthorized actions, via modified values to register.php.
network
low complexity
extcalendar-project CWE-522
critical
9.8