Vulnerabilities > Lucas Rodriguez SAN Pedro

DATE CVE VULNERABILITY TITLE RISK
2006-11-15 CVE-2006-5908 SQL Injection vulnerability in Lucas Rodriguez SAN Pedro YET Another News System 0.2B
Multiple SQL injection vulnerabilities in the login_user function in yans.func.php in Lucas Rodriguez San Pedro Yet Another News System (YANS) 0.2b allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter.
network
low complexity
lucas-rodriguez-san-pedro
7.5