RSS   Vulnerabilities for 'Snews'   RSS

2010-07-30
 
CVE-2010-2926

CWE-89
 

 
SQL injection vulnerability in index.php in sNews 1.7 allows remote attackers to execute arbitrary SQL commands via the category parameter.

 
2006-07-27
 
CVE-2006-3916

 

 
Cross-site scripting (XSS) vulnerability in snews.php in sNews (aka Solucija News) 1.4 allows remote attackers to inject arbitrary web script or HTML via the search_query parameter.

 
2006-02-15
 
CVE-2006-0716

CWE-Other
 

 
SQL injection vulnerability in index.php in sNews 1.3 allows remote attackers to execute arbitrary SQL commands via the (1) category and (2) id parameters.

 
 
CVE-2006-0715

CWE-Other
 

 
Cross-site scripting (XSS) vulnerability in sNews 1.3 allows remote attackers to inject arbitrary web script or HTML via the comment field.

 
2005-11-27
 
CVE-2005-3853

 

 
SQL injection vulnerability in snews.php in sNews 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category parameters to index.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top