RSS   Vulnerabilities for 'Myarticles'   RSS

2008-05-05
 
CVE-2008-2084

CWE-89
 

 
SQL injection vulnerability in topics.php in the MyArticles 0.6 beta-1 module for RunCMS allows remote attackers to execute arbitrary SQL commands via the topic_id parameter in a listarticles action.

 
2006-12-10
 
CVE-2006-6452

 

 
Multiple cross-site scripting (XSS) vulnerabilities in the MyArticles module before 0.6 beta 1, for RunCMS, allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) topics.php, (2) submit.php, and (3) class/calendar.class.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top