PublicDate: 2005-07-19 04:00:00 UTC Candidate: CVE-2005-2320 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2320 Description: WebCalendar before 1.0.0 does not properly restrict access to assistant_edit.php, which allows remote attackers to gain privileges. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_webcalendar: ignored (reached end-of-life) edgy_webcalendar: needed (reached end-of-life) feisty_webcalendar: DNE gutsy_webcalendar: released (1.0.5-12) hardy_webcalendar: released (1.0.5-12) intrepid_webcalendar: released (1.0.5-12) jaunty_webcalendar: released (1.0.5-12) karmic_webcalendar: released (1.0.5-12) devel_webcalendar: released (1.0.5-12) upstream_webcalendar: needs-triage