Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
xqus x-news 1.1 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2002-1656
X-News (x_news) 1.1 and previous versions allows malicious users to authenticate as other users by obtaining the MD5 checksum of the password, e.g. via sniffing or the users.txt data file, and providing it in a cookie.
Xqus X-news 1.1
Xqus X-news 1.0
1 EDB exploit
7.5
CVSSv2
CVE-2002-2046
x_news.php in X-News (x_news) 1.1 and previous versions allows remote malicious users to gain administrative privileges by stealing and replaying the md5_password cookie.
Xqus X-news 1.1
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23692
CVE-2012-1823
memory leak
CVE-2024-0627
CVE-2024-31402
privilege escalation
CVE-2024-36418
remote code execution
CVE-2024-27844
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started