7 results (0.003 seconds)

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "searchtitle" parameter in search.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "description" parameter in admin/add-category.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "pagetitle" and "pagedescription" parameters in admin/contactus.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "sadminusername" parameter in admin/add-subadmins.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "category" and "subcategory" parameters in admin/add-subcategory.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "pagedescription" parameter in admin/aboutus.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 9.8EPSS: 0%CPEs: 1EXPL: 0

03 Mar 2025 — SQL injection vulnerability have been found in 101news affecting version 1.0 through the "username" parameter in admin/check_avalability.php. • https://www.incibe.es/en/incibe-cert/notices/aviso/multiple-vulnerabilities-101news • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •