Vulnerabilities > Solucija

DATE CVE VULNERABILITY TITLE RISK
2010-07-30 CVE-2010-2926 SQL Injection vulnerability in Solucija Snews 1.7
SQL injection vulnerability in index.php in sNews 1.7 allows remote attackers to execute arbitrary SQL commands via the category parameter.
network
low complexity
solucija CWE-89
7.5
2006-07-28 CVE-2006-3916 Cross-Site Scripting vulnerability in Solucija Snews 1.4
Cross-site scripting (XSS) vulnerability in snews.php in sNews (aka Solucija News) 1.4 allows remote attackers to inject arbitrary web script or HTML via the search_query parameter.
network
solucija
4.3
2006-02-15 CVE-2006-0716 Input Validation vulnerability in Solucija Snews 1.3
SQL injection vulnerability in index.php in sNews 1.3 allows remote attackers to execute arbitrary SQL commands via the (1) category and (2) id parameters.
network
low complexity
solucija
7.5
2006-02-15 CVE-2006-0715 Input Validation vulnerability in Solucija Snews 1.3
Cross-site scripting (XSS) vulnerability in sNews 1.3 allows remote attackers to inject arbitrary web script or HTML via the comment field.
network
solucija
4.3
2005-11-27 CVE-2005-3853 SQL-Injection vulnerability in Solucija Snews 1.2
SQL injection vulnerability in snews.php in sNews 1.3 and earlier allows remote attackers to execute arbitrary SQL commands via the (1) id and (2) category parameters to index.php.
network
low complexity
solucija
7.5