|
phpGroupWare contains a flaw that will allow an attacker to inject arbitrary SQL code. The problem is that variables in the 'calendar' module are not verified properly and will allow an attacker to inject or manipulate SQL queries. No further details have been provided.
|