Vulnerabilities > Myiosoft > Easynews > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2008-04-02 | CVE-2008-1651 | Path Traversal vulnerability in Myiosoft Easynews 4.0Tr Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbitrary local files via a .. | 7.5 |
2008-04-02 | CVE-2008-1650 | SQL Injection vulnerability in Myiosoft Easynews 4.0Tr SQL injection vulnerability in dynamicpages/index.php in EasyNews 4.0 allows remote attackers to execute arbitrary SQL commands via the read parameter in an edp_Help_Internal_News action. | 7.5 |