CVE-2007-6553 | George Lewe TeamCal Pro up to 3.1.000 Login tcuser.class.php CONF[app_root] code injection (EDB-4785 / XFDB-39212)
A vulnerability has been found in George Lewe TeamCal Pro up to 3.1.000 and classified as critical. Affected by this vulnerability is an unknown functionality of the file tcuser.class.php of the component Login. The manipulation of the argument CONF[app_root] leads to code injection.
This vulnerability is known as CVE-2007-6553. The attack can be launched remotely. Furthermore, there is an exploit available.