Back

CVE-2003-0735

SQL injection vulnerability in the Calendar module of phpWebSite 0.9.x and earlier allows remote attackers to execute arbitrary SQL queries, as demonstrated using the year parameter.

Published: Oct 20, 2003 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
phpwebsite phpwebsite *

GitHub Security Advisory GHSA-hc7p-4gp7-7gxr

SQL injection vulnerability in the Calendar module of phpWebSite 0.9.x and earlier allows remote...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.67%

Top 25% most likely to be exploited

Threat Score 30.5 / 100

Data Sources

NVD EPSS GitHub