Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fscripts fantastic news 2.1.1 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-4671
PHP remote file inclusion vulnerability in headlines.php in Fantastic News 2.1.4, and possibly earlier, allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[script_path] parameter, a different vector than CVE-2006-1154.
Fscripts Fantastic News
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.3
1 EDB exploit
NA
CVE-2006-4285
PHP remote file inclusion vulnerability in news.php in Fantastic News 2.1.3 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[script_path] parameter. NOTE: it was later reported that 2.1.5 is also affected.
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.5
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.3
1 EDB exploit
NA
CVE-2006-1154
PHP remote file inclusion vulnerability in archive.php in Fantastic News 2.1.2 allows remote malicious users to include arbitrary files via the CONFIG[script_path] variable. NOTE: 2.1.4 was also reported to be vulnerable.
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.4
Fscripts Fantastic News 2.1.1
NA
CVE-2006-0972
SQL injection vulnerability in news.php in Tony Baird Fantastic News 2.1.1 allows remote malicious users to execute arbitrary SQL commands via the page parameter. NOTE: the category vector is already covered by CVE-2005-3846.
Fscripts Fantastic News 2.1.1
1 EDB exploit
NA
CVE-2005-3846
SQL injection vulnerability in news.php in Fantastic News 2.1.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the category parameter.
Fscripts Fantastic News
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
inject
CVE-2024-34001
CVE-2024-37018
LFI
CVE-2024-1275
CVE-2024-1086
CSRF
CVE-2024-31030
CVE-2024-24919
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started