VendorsAdminnewstoolsadmin_news_toolsall versions
Vulnerabilities

Adminnewstools Admin News Tools

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2009-2558
system/message.php in Admin News Tools 2.5 does not properly restrict access, which allows remote attackers to post news messages via a direct request.
Published 2009-07-21 · Modified
7.51 PoCEPSS 0.024
CVE-2009-2557
Directory traversal vulnerability in system/download.php in Admin News Tools 2.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the fichier parameter.
Published 2009-07-21 · Modified
5.01 PoCEPSS 0.068