S4E just found an informational finding from web sayfası erişilebilirlik kontrolü
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2015-2196

7.5
CVSS
Description

SQL injection vulnerability in Spider Event Calendar 1.4.9 for WordPress allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a spiderbigcalendar_month action to wp-admin/admin-ajax.php.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Updated Sep 18, 2026View on NVD →
S4E scanner

CVE-2015-2196 Scanner

SQL injection in Spider Calendar 1.4.9 via cat_id parameter in spiderbigcalendar_month action to wp-admin/admin-ajax.php allows remote attackers to execute arbitrary SQL commands.

Used 2.6k times · 2 assets checked · domain, ipv4, subdomain

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →