Description - SQL Injection in Benders Calendar

SQL Injection found in Benders Calendar script.

Exploit
Available
Solution
Not available - check vendor's website

All user-defined variables isn't properly sanitized before being used in a SQL query. This can be used to make any SQL query by injecting arbitrary SQL code.

Condition: magic_quotes_gpc: off

Order Source Code Analysis made by eVuln team

Protect a website by source code analysis of your site made by Aliaksandr Hartsuyeu.The work will be done by experts in web application security.