Vulnerabilities > Mambo > Mambo Calendar

DATE CVE VULNERABILITY TITLE RISK
2007-04-16 CVE-2007-2049 Remote File Include vulnerability in Mambo Calendar 1.5.5
Multiple PHP remote file inclusion vulnerabilities in the Calendar Module (com_calendar) 1.5.5 for Mambo allow remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter to (1) com_calendar.php or (2) mod_calendar.php.
network
mambo
6.8
2006-07-25 CVE-2006-3843 Remote File Include vulnerability in Mambo Calendar 1.5.7
PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.
network
low complexity
mambo
7.5