Show filters
18 Total Results
Displaying 11-18 of 18
Sort by:
Attacker Value
Unknown
CVE-2015-9500
Disclosure Date: October 22, 2019 (last updated November 27, 2024)
The Exquisite Ultimate Newspaper theme 1.3.3 for WordPress has XSS via the anchor identifier to assets/js/jquery.foundation.plugins.js.
0
Attacker Value
Unknown
CVE-2016-10972
Disclosure Date: September 16, 2019 (last updated November 27, 2024)
The newspaper theme before 6.7.2 for WordPress has a lack of options access control via td_ajax_update_panel.
0
Attacker Value
Unknown
CVE-2017-18634
Disclosure Date: September 16, 2019 (last updated November 27, 2024)
The newspaper theme before 6.7.2 for WordPress has script injection via td_ads[header] to admin-ajax.php.
0
Attacker Value
Unknown
CVE-2017-15981
Disclosure Date: October 31, 2017 (last updated November 26, 2024)
Responsive Newspaper Magazine & Blog CMS 1.0 allows SQL Injection via the id parameter to admin/admin_process.php for form editing.
0
Attacker Value
Unknown
CVE-2014-7085
Disclosure Date: October 19, 2014 (last updated October 05, 2023)
The i Newspaper (aka com.independent.thei) application @7F080184 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2014-6657
Disclosure Date: September 23, 2014 (last updated October 05, 2023)
The Leadership Newspapers (aka com.LeadershipNewspapers) application 1.2 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
0
Attacker Value
Unknown
CVE-2010-1950
Disclosure Date: May 19, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the Online News Paper Manager (com_jnewspaper) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the date_info parameter to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2010-1949
Disclosure Date: May 19, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the Online News Paper Manager (com_jnewspaper) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the cid parameter to index.php. NOTE: some of these details are obtained from third party information.
0