Security Advisory
CVE-2005-2320
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
WebCalendar before 1.0.0 does not properly restrict access to assistant_edit.php, which allows remote attackers to gain privileges.