mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-12 01:02:37 +02:00
755 B
755 B
CVE-2014-10015
Description
SQL injection vulnerability in load-calendar.php in PHPJabbers Event Booking Calendar 2.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter.
POC
Reference
- http://packetstormsecurity.com/files/124753/eventbookingcalendar-xssxsrfsql.txt
- http://packetstormsecurity.com/files/124753/eventbookingcalendar-xssxsrfsql.txt
Github
No PoCs found on GitHub currently.