CVE-2008-5797
SQL injection vulnerability in the advCalendar extension 0.3.1 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
Date published : 2008-12-31
http://www.securityfocus.com/bid/32230
http://typo3.org/teams/security/security-bulletins/typo3-20081110-2/