Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fantastic news fantastic news vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-4671
PHP remote file inclusion vulnerability in headlines.php in Fantastic News 2.1.4, and possibly earlier, allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[script_path] parameter, a different vector than CVE-2006-1154.
Fscripts Fantastic News
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.3
1 EDB exploit
NA
CVE-2006-4285
PHP remote file inclusion vulnerability in news.php in Fantastic News 2.1.3 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[script_path] parameter. NOTE: it was later reported that 2.1.5 is also affected.
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.5
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.3
1 EDB exploit
NA
CVE-2006-6542
SQL injection vulnerability in news.php in Fantastic News 2.1.4 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Fantastic News Fantastic News
1 EDB exploit
NA
CVE-2006-1154
PHP remote file inclusion vulnerability in archive.php in Fantastic News 2.1.2 allows remote malicious users to include arbitrary files via the CONFIG[script_path] variable. NOTE: 2.1.4 was also reported to be vulnerable.
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.4
Fscripts Fantastic News 2.1.1
NA
CVE-2005-3846
SQL injection vulnerability in news.php in Fantastic News 2.1.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the category parameter.
Fscripts Fantastic News
1 EDB exploit
NA
CVE-2006-0972
SQL injection vulnerability in news.php in Tony Baird Fantastic News 2.1.1 allows remote malicious users to execute arbitrary SQL commands via the page parameter. NOTE: the category vector is already covered by CVE-2005-3846.
Fscripts Fantastic News 2.1.1
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
SSTI
CVE-2024-35863
CVE-2024-35910
man-in-the-middle
CVE-2024-35912
CVE-2024-25742
LFI
CVE-2024-32002
CVE-2024-22120
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started