Filtered by vendor Sweetphp
Subscriptions
Filtered by product Totalcalender
Subscriptions
Total
1 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2009-4929 | 1 Sweetphp | 1 Totalcalender | 2024-11-21 | N/A |
admin/manage_users.php in TotalCalendar 2.4 does not require administrative authentication, which allows remote attackers to change arbitrary passwords via the newPW1 and newPW2 parameters. |
Page 1 of 1.