CVE

CVE-2012-6527 — My Calendar – Accessible Event Manager [my-calendar] < 1.10.5

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2012-6527 My Calendar – Accessible Event Manager [my-calendar] < 1.10.5 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Unknown < 1.10.5 1.10.5 2012-01-18

CVE-2012-6527

The My Calendar plugin for WordPress contained a cross-site scripting flaw in versions prior to 1.10.2 that allowed attackers to execute malicious scripts or inject arbitrary HTML through the PATH_INFO parameter.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.