Extcalendar 2 - 'calendar.php' SQL Injection

Author: Lagripe-Dz & Mca-Crb
type: webapps
platform: php
port: 
date_added: 2011-01-11  
date_updated: 2011-01-13  
verified: 0  
codes:   
tags:   
aliases:   
screenshot_url:   
application_url: http://www.exploit-db.comextcal2.0_b2.zip  

raw file: 15966.txt  
# Title : ExtCalendar 2 (calendar.php) SQL Injection Vulnerability
# Author : Lagripe-Dz
# Product: ExtCalendar 2
# Download : http://sourceforge.net/projects/extcal/
# Date: 10/01/2011
# Dork : inurl:calendar.php?mode=cat

================================================================

-== ExPloiT ==-

http://www.site.com/[PATH]/calendar.php?mode=cat&cat_id=[SQL.i]


================================================================

Greetz To : MCA-CRB , BrOx-Dz , DyinG.Dz & All Dz
Greetz To All Members of : wWw.sEc4EvEr.CoM , wWw.sEc-wAr.CoM