İçeriğe atla
Noroxi

phpnews kayıtları

phpnews üreticisine ait 7 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
0 · %0
Pre-auth RCE
5
Düzeltme kaydı olan
%0
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Yıllara göre kayıt

    Çubuk: toplam · koyu kısım: CISA KEV.

    Tekrar eden sınıflar

      Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.

      CWE

      Tüm kayıtlar

      7 kayıt
      • CVE-2006-7081
        31İzleyin

        Multiple PHP remote file inclusion vulnerabilities in PhpNews 1.0 allow remote attackers to execute arbitrary PHP code via the Include param

        YüksekCVSS 7,5Kavram kanıtıEPSS %3

        phpnews · phpnews2 Mar 2007

      • CVE-2004-2474
        30İzleyin

        SQL injection vulnerability in PHPNews 1.2.3 allows remote attackers to execute arbitrary SQL commands via the mid parameter to sendtofriend

        YüksekCVSS 7,5İstismar yokEPSS %1

        phpnews · phpnews31 Ara 2004

      • CVE-2005-2383
        30İzleyin

        SQL injection vulnerability in auth.php in PHPNews 1.2.5 allows remote attackers to execute arbitrary SQL commands via the user parameter in

        YüksekCVSS 7,5Kavram kanıtıEPSS %1

        phpnews · phpnews26 Tem 2005

      • CVE-2005-2156
        30İzleyin

        SQL injection vulnerability in news.php in PHPNews 1.2.5 allows remote attackers to execute arbitrary SQL commands via the prevnext paramete

        YüksekCVSS 7,5İstismar yokEPSS %1

        phpnews · phpnews6 Tem 2005

      • CVE-2006-6356
        28İzleyin

        Multiple cross-site scripting (XSS) vulnerabilities in templates/link_temp.php in PHPNews 1.3.0 allow remote attackers to inject arbitrary w

        OrtaCVSS 6,8Kavram kanıtıEPSS %2

        phpnews · phpnews6 Ara 2006

      • CVE-2006-6357
        27İzleyin

        Cross-site scripting (XSS) vulnerability in templates/cat_temp.php in PHPNews 1.3.0 and earlier allows remote attackers to inject arbitrary

        OrtaCVSS 6,8İstismar yokEPSS %1

        phpnews · phpnews6 Ara 2006

      • CVE-2005-0632
        21İzleyin

        PHP remote file inclusion vulnerability in auth.php in PHPNews 1.2.4 and possibly 1.2.3, allows remote attackers to execute arbitrary PHP co

        OrtaCVSS 5,0Kavram kanıtıEPSS %3

        phpnews · phpnews1 Mar 2005