CVE-2018-6576: Ezcode Event Manager

Critical severity, CVSS 9.8. EPSS: 2.7% chance of exploitation in the next 30 days.

SQL Injection exists in Event Manager 1.0 via the event.php id parameter or the page.php slug parameter.

Affected products

  • Ezcode Event Manager: version 1.0 only

Published 2018-02-02. Last modified 2026-06-17.