CVE-2008-5654 | MyioSoft EasyCalendar 4.0 Login ajaxp.php loginADP username sql injection (EDB-7046 / XFDB-46448)
A vulnerability was found in MyioSoft EasyCalendar 4.0 and classified as critical. Affected by this issue is the function loginADP of the file ajaxp.php of the component Login. The manipulation of the argument username leads to sql injection.
This vulnerability is handled as CVE-2008-5654. The attack may be launched remotely. Furthermore, there is an exploit available.