Vulnerabilities > PHP Fusion > Expanded Calendar Module > 2.01

DATE CVE VULNERABILITY TITLE RISK
2007-10-03 CVE-2007-5187 SQL Injection vulnerability in PHP-Fusion Expanded Calendar Module and PHP-Fusion
SQL injection vulnerability in infusions/calendar_events_panel/show_single.php in the Expanded Calendar 2.x module for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the sel parameter.
network
low complexity
php-fusion CWE-89
7.5