VendorsMikael Softwarewmnewsany version
Vulnerabilities

Mikael Software Wmnews any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2006-3928
PHP remote file inclusion vulnerability in index.php in WMNews 0.2a and earlier allows remote attackers to execute arbitrary PHP code via a URL in the base_datapath parameter.
Published 2006-07-31 · Modified
7.51 PoCEPSS 0.032
CVE-2006-1233
Multiple cross-site scripting (XSS) vulnerabilities in WMNews allow remote attackers to inject arbitrary web script or HTML via the (1) ArtCat parameter to wmview.php, (2) ctrrowcol parameter to footer.php, or (3) ArtID parameter to wmcomments.php.
Published 2006-03-14 · Modified
4.33 PoCEPSS 0.025