Filtered by vendor Vscripts.pl
Subscribe
Total
2 CVE
| CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
|---|---|---|---|---|---|
| CVE-2006-1575 | 1 Vscripts.pl | 1 Qlnews | 2025-04-03 | 6.8 MEDIUM | N/A |
|
Multiple cross-site scripting (XSS) vulnerabilities in news.php in QLnews 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) autorx and (2) newsx parameters.
|
|||||
| CVE-2006-1576 | 1 Vscripts.pl | 1 Qlnews | 2025-04-03 | 7.5 HIGH | N/A |
|
Direct static code injection vulnerability in QLnews 1.2 allows remote authenticated administrators to execute arbitrary PHP code by modifying config.php.
|
|||||