CVE-2015-4654 Information

Description

SQL injection vulnerability in the EQ Event Calendar component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to eqfullevent.

Reference

http://packetstormsecurity.com/files/132220/Joomla-EQ-Event-Calendar-SQL-Injection.html http://www.securityfocus.com/bid/75261

Share on: