Vulnerabilities > Webcalendar > WEB Calendar PRO > High

DATE CVE VULNERABILITY TITLE RISK
2008-04-25 CVE-2008-1954 SQL Injection vulnerability in Webcalendar web Calendar PRO 4.0
SQL injection vulnerability in one_day.php in Web Calendar Pro 4.1 and earlier allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
network
low complexity
webcalendar CWE-89
7.5