Vendors1two1two_news1.0
Vulnerabilities

1two 1two News 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2005-1583
1Two News 1.0 allows remote attackers to (1) delete images for new stories via a direct request to admin/delete.php or (2) upload arbitrary images via a direct request to admin/upload.php.
Published 2005-05-14 · Modified
5.0EPSS 0.011
CVE-2005-1582
Cross-site scripting (XSS) vulnerability in index.php for 1Two News 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) nom, (2) email, (3) siteweb, or (4) commentaire variables.
Published 2005-05-14 · Modified
4.3EPSS 0.010