CVE-2018-6398

CVE: CVE-2018-6398
Published: 2018-01-30T15:29Z
Vendor: joomlacalendars
Products: event_calendar
Versions: 3.0.1,
Description Language: en
Description: SQL Injection exists in the CP Event Calendar 3.0.1 component for Joomla! via the id parameter in a task=load action.
References:
https://www.exploit-db.com/exploits/43932/