CVE-2007-1483

Publication date 16 March 2007

Last updated 17 July 2025


Ubuntu priority

Description

Multiple PHP remote file inclusion vulnerabilities in WebCalendar 0.9.45 allow remote attackers to execute arbitrary PHP code via a URL in the includedir parameter to (1) login.php, (2) get_reminders.php, or (3) get_events.php.

Status

Package Ubuntu Release Status
webcalendar 9.10 karmic
Fixed 1.0.5-1
9.04 jaunty
Fixed 1.0.5-1
8.10 intrepid
Fixed 1.0.5-1
8.04 LTS hardy
Fixed 1.0.5-1
7.10 gutsy
Fixed 1.0.5-1
7.04 feisty Not in release
6.10 edgy Ignored end of life, was needed
6.06 LTS dapper Ignored end of life