← Back

CVE-2010-0637

nvd nist
Published: Feb 12, 2010Modified: Apr 29, 2026

JSON object

Loading...
6.8
Vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Exploitability: 8.6 / Impact: 6.4
Source: NVD

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in WebCalendar 1.2.0, and other versions before 1.2.5, allow remote attackers to hijack the authentication of administrators for requests that (1) delete an event or (2) ban an IP address from posting via unknown vectors. NOTE: some of these details are obtained from third party information.

Affected (1)

Products: K5n: Webcalendar
1 product
Webcalendar
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 1.2.0

References (6)

Timeline

No history available yet.