Total vulnerabilities in the database
WebCalendar before 1.0.0 does not properly restrict access to assistant_edit.php, which allows remote attackers to gain privileges.
CVSS v2:
No CWE or OWASP classifications available.