SQL Injection exists in the SimpleCalendar 3.1.9 component for Joomla! via the catid array parameter.
CVSS 2.0
Severity: HIGH
Problem Type: CWE-89,
Products Affected