Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fantastic news fantastic news vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-4671
PHP remote file inclusion vulnerability in headlines.php in Fantastic News 2.1.4, and possibly earlier, allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[script_path] parameter, a different vector than CVE-2006-1154.
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News
Fscripts Fantastic News 2.1.3
1 EDB exploit
NA
CVE-2006-4285
PHP remote file inclusion vulnerability in news.php in Fantastic News 2.1.3 and previous versions allows remote malicious users to execute arbitrary PHP code via a URL in the CONFIG[script_path] parameter. NOTE: it was later reported that 2.1.5 is also affected.
Fscripts Fantastic News 2.1.5
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.2
Fscripts Fantastic News 2.1.3
1 EDB exploit
NA
CVE-2006-6542
SQL injection vulnerability in news.php in Fantastic News 2.1.4 and previous versions allows remote malicious users to execute arbitrary SQL commands via the id parameter.
Fantastic News Fantastic News
1 EDB exploit
NA
CVE-2006-1154
PHP remote file inclusion vulnerability in archive.php in Fantastic News 2.1.2 allows remote malicious users to include arbitrary files via the CONFIG[script_path] variable. NOTE: 2.1.4 was also reported to be vulnerable.
Fscripts Fantastic News 2.1.4
Fscripts Fantastic News 2.1.1
Fscripts Fantastic News 2.1.2
NA
CVE-2005-3846
SQL injection vulnerability in news.php in Fantastic News 2.1.1 and previous versions allows remote malicious users to execute arbitrary SQL commands via the category parameter.
Fscripts Fantastic News
1 EDB exploit
NA
CVE-2006-0972
SQL injection vulnerability in news.php in Tony Baird Fantastic News 2.1.1 allows remote malicious users to execute arbitrary SQL commands via the page parameter. NOTE: the category vector is already covered by CVE-2005-3846.
Fscripts Fantastic News 2.1.1
1 EDB exploit
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27802
template injection
CVE-2024-0044
code injection
CVE-2024-35474
CVE-2024-27857
CVE-2024-23251
CVE-2024-23692
physical
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started