VendorsDonnafontenotevcal_events_calendarall versions
Vulnerabilities

Donnafontenot Evcal Events Calendar

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2008-6356
evCal Events Calendar stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing the username and password via a direct request to (1) evcal.mdb and (2) evcal97.mdb.
Published 2009-03-02 · Modified
5.01 PoCEPSS 0.026