Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2005-0632
Disclosure Date: March 01, 2005 (last updated February 22, 2025)
PHP remote file inclusion vulnerability in auth.php in PHPNews 1.2.4 and possibly 1.2.3, allows remote attackers to execute arbitrary PHP code via the path parameter.
0
Attacker Value
Unknown
CVE-2004-2474
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
SQL injection vulnerability in PHPNews 1.2.3 allows remote attackers to execute arbitrary SQL commands via the mid parameter to sendtofriend.php.
0