PHP-Calendar Multiple SQL Injection and Cross Site Scripting Issues
Description
Multiple vulnerabilities have been identified in PHP-Calendar, which could be exploited by attackers to disclose sensitive information or inject SQL queries. These issues are caused by input unspecified input validation errors in various scripts, which could be exploited to conduct cross site scripting and SQL injection attacks.
Vulnerable Products
Vulnerable Software: PHP-Calendar 2.0 Beta7 and prior