Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xigla absolute news manager.net 5.1 vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2008-6856
Xigla Software Absolute News Manager.NET 5.1 allows remote malicious users to bypass authentication and gain administrative access by setting a cookie to a certain value.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
755
VMScore
CVE-2007-6269
Multiple SQL injection vulnerabilities in xlaabsolutenm.aspx in Absolute News Manager.NET 5.1 allow remote malicious users to execute arbitrary SQL commands via the (1) z, (2) pz, (3) ord, and (4) sort parameters.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
505
VMScore
CVE-2007-6268
Directory traversal vulnerability in pages/default.aspx in Absolute News Manager.NET 5.1 allows remote malicious users to read arbitrary files via a .. (dot dot) in the template parameter.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
440
VMScore
CVE-2007-6270
Multiple cross-site scripting (XSS) vulnerabilities in Absolute News Manager.NET 5.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) rmore parameter to xlaabsolutenm.aspx and the (2) template parameter to pages/default.aspx.
Xigla Absolute News Manager.net 5.1
2 EDB exploits
505
VMScore
CVE-2007-6271
Absolute News Manager.NET 5.1 allows remote malicious users to obtain sensitive information via a direct request to getpath.aspx, which reveals the installation path in an error message.
Xigla Absolute News Manager.net 5.1
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started