cve/2009/CVE-2009-4973.md
2024-05-26 14:27:05 +02:00

630 B

CVE-2009-4973

Description

SQL injection vulnerability in rss.php in TotalCalendar 2.4 allows remote attackers to execute arbitrary SQL commands via the selectedCal parameter in a SwitchCal action.

POC

Reference

Github

No PoCs found on GitHub currently.