Vulnerabilities > WEB Content Management

DATE CVE VULNERABILITY TITLE RISK
2005-08-07 CVE-2005-2489 Unspecified vulnerability in web Content Management web Content Management News System
Web Content Management News System allows remote attackers to create arbitrary accounts and gain privileges via a direct request to Admin/Users/AddModifyInput.php.
network
low complexity
web-content-management
7.5
2005-08-07 CVE-2005-2488 Cross-Site Scripting vulnerability in Web Content Management
Cross-site scripting (XSS) vulnerability in Web Content Management News System allows remote attackers to inject arbitrary web script or HTML via (1) the strRootpath parameter to validsession.php or (2) the strTable parameter to Admin/News/List.php.
4.3