Skip to content
Noroxi

easyscripts records

6 published records for vendor easyscripts.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • CVE-2001-1437
    31Monitor

    easyScripts easyNews 1.5 allows remote attackers to obtain the full path of the web root via a view request with a non-integer news message

    HighCVSS 7.5No exploitEPSS 2%

    easyscripts · easynewsDec 1, 2001

  • CVE-2008-1957
    30Monitor

    SQL injection vulnerability in news.php in Tr Script News 2.1 allows remote attackers to execute arbitrary SQL commands via the nb parameter

    HighCVSS 7.5Proof of conceptEPSS 1%

    easyscripts · tr script newsApr 25, 2008

  • CVE-2008-1958
    27Monitor

    Unrestricted file upload vulnerability in the ajout_cat mode in admin/main.php in Tr Script News 2.1 allows remote authenticated users to ex

    MediumCVSS 6.5Proof of conceptEPSS 3%

    easyscripts · tr script newsApr 25, 2008

  • CVE-2001-1525
    21Monitor

    Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify news.dat, template.da

    MediumCVSS 5.0Proof of conceptEPSS 3%

    easyscripts · easynewsDec 31, 2001

  • CVE-2001-1526
    17Monitor

    Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote attackers to inject a

    MediumCVSS 4.3No exploitEPSS 1%

    easyscripts · easynewsDec 31, 2001

  • easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and

    LowCVSS 2.1No exploitEPSS 0%

    easyscripts · easynewsDec 31, 2001