VYPR

Yet Another Community System CMS

by Bernard Pacques

CVEs (2)

  • CVE-2006-4559Sep 6, 2006
    risk 0.04cvss epss 0.05

    Multiple PHP remote file inclusion vulnerabilities in Yet Another Community System (YACS) CMS 6.6.1 allow remote attackers to execute arbitrary PHP code via a URL in the context[path_to_root] parameter in (1) articles/populate.php, (2) categories/category.php, (3)…

  • CVE-2006-4532Sep 1, 2006
    risk 0.04cvss epss 0.07

    PHP remote file inclusion vulnerability in articles/article.php in Yet Another Community System (YACS) CMS 6.6.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the context[path_to_root] parameter.