VYPR

Magic News Lite

by Reamday Enterprises

CVEs (2)

  • CVE-2006-0723Feb 16, 2006
    risk 0.00cvss epss 0.02

    PHP remote file inclusion vulnerability in preview.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to include arbitrary files via a URL in the php_script_path parameter.

  • CVE-2006-0724Feb 16, 2006
    risk 0.00cvss epss 0.01

    profile.php in Reamday Enterprises Magic News Lite 1.2.3, when register_globals is enabled, allows remote attackers to modify program behavior, potentially bypassing authentication controls, via modified (1) action, (2) passwd, (3) admin_password, (4) new_passwd, and (5)…

VYPR — Vulnerability Intelligence