VendorsSolucijasnewsall versions
Vulnerabilities

Solucija Snews

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

5CVEs
CVE-2006-0716
SQL injection vulnerability in index.php in sNews 1.3 allows remote attackers to execute arbitrary SQL commands via the (1) category and (2) id parameters.
Published 2006-02-15 · Modified
7.5EPSS 0.013
CVE-2005-3853
SQL injection vulnerability in snews.php in sNews 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category parameters to index.php.
Published 2005-11-27 · Modified
7.51 PoCEPSS 0.011
CVE-2010-2926
SQL injection vulnerability in index.php in sNews 1.7 allows remote attackers to execute arbitrary SQL commands via the category parameter.
Published 2010-07-30 · Modified
7.51 PoCEPSS 0.009
CVE-2006-0715
Cross-site scripting (XSS) vulnerability in sNews 1.3 allows remote attackers to inject arbitrary web script or HTML via the comment field.
Published 2006-02-15 · Modified
4.31 PoCEPSS 0.018
CVE-2006-3916
Cross-site scripting (XSS) vulnerability in snews.php in sNews (aka Solucija News) 1.4 allows remote attackers to inject arbitrary web script or HTML via the search_query parameter.
Published 2006-07-28 · Modified
4.3EPSS 0.013