Vulnerabilities > WEB Dorado > Spider Calendar
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2015-03-03 | CVE-2015-2196 | SQL Injection vulnerability in Web-Dorado Spider Calendar 1.4.9 SQL injection vulnerability in Spider Event Calendar 1.4.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a spiderbigcalendar_month action to wp-admin/admin-ajax.php. | 7.5 |