Vulnerabilities > Lushinews

DATE CVE VULNERABILITY TITLE RISK
2007-02-09 CVE-2007-0865 SQL Injection vulnerability in Lushinews 1.00/1.01
SQL injection vulnerability in comments.php in LushiNews 1.01 and earlier allows remote authenticated users to inject arbitrary SQL commands via the id parameter.
network
low complexity
lushinews
7.5