Vulnerabilities > Lushinews > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2007-02-09 | CVE-2007-0865 | SQL Injection vulnerability in Lushinews 1.00/1.01 SQL injection vulnerability in comments.php in LushiNews 1.01 and earlier allows remote authenticated users to inject arbitrary SQL commands via the id parameter. | 7.5 |