Vulnerabilities (CVE)

Filtered by vendor Mambo Subscribe
Filtered by product Mambo Calendar
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-2049 1 Mambo 1 Mambo Calendar 2024-02-04 6.8 MEDIUM N/A
Multiple PHP remote file inclusion vulnerabilities in the Calendar Module (com_calendar) 1.5.5 for Mambo allow remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter to (1) com_calendar.php or (2) mod_calendar.php.
CVE-2006-3843 1 Mambo 1 Mambo Calendar 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.