PHP iCalendar 2.24 and earlier allows remote attackers to bypass authentication by setting the phpicalendar and phpicalendar_login cookies to 1.
- http://securityreason.com/securityalert/4865
- https://www.exploit-db.com/exploits/6526
No PoCs found on GitHub currently.