Unrated severityNVD Advisory· Published Nov 14, 2007· Updated Apr 23, 2026
CVE-2007-5952
CVE-2007-5952
Description
Cross-site scripting (XSS) vulnerability in admin/index.php in Helios Calendar 1.2.1 Beta allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Affected products
1- cpe:2.3:a:helioscalendar:helios_calendar:1.2.1_beta:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- www.securityfocus.com/bid/26312nvdExploit
- secunia.com/advisories/27490nvdVendor Advisory
- osvdb.org/38408nvd
- securityreason.com/securityalert/3337nvd
News mentions
0No linked articles in our index yet.