Vulnerabilities (CVE)

Filtered by vendor Webcalendar Subscribe
Total 21 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-0474 1 Webcalendar 1 Webcalendar 2025-04-03 6.4 MEDIUM N/A
SQL injection vulnerability in the user_valid_crypt function in user.php in WebCalendar 0.9.45 allows remote attackers to execute arbitrary SQL commands via an encoded webcalendar_session cookie.