Skip to main content

Vendor/product archive

dreaxteam / xt-news CVEs

Beta · best-effort

2 CVEs tagged to dreaxteam / xt-news0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2006-6746

Published Dec 27, 2006

Multiple cross-site scripting (XSS) vulnerabilities in Xt-News 0.1 allow remote attackers to inject arbitrary web script or HTML via the id_news parameter to (1) add_comment.php o…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6747

Published Dec 27, 2006

SQL injection vulnerability in show_news.php in Xt-News 0.1 allows remote attackers to execute arbitrary SQL commands via the id_news parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1