VYPR
Vendor

qliteNews

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2008-3508Aug 7, 2008
    risk 0.03cvss —epss 0.03

    LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie.

  • CVE-2008-3507Aug 7, 2008
    risk 0.03cvss —epss 0.01

    SQL injection vulnerability in index.php in LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action.

  • CVE-2006-1571Apr 1, 2006
    risk 0.00cvss —epss 0.01

    Multiple SQL injection vulnerabilities in loginprocess.php in qliteNews 2005.07.01 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.