CVE-2025-4728
- EPSS 0.07%
- Veröffentlicht 15.05.2025 23:00:11
- Zuletzt bearbeitet 27.05.2025 19:51:24
A vulnerability was found in SourceCodester Best Online News Portal 1.0. It has been classified as critical. Affected is an unknown function of the file /search.php. The manipulation of the argument searchtitle leads to sql injection. It is possible ...
CVE-2025-1870
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:12
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "pagedescription" parameter in admin/aboutus.php.
CVE-2025-1871
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:12
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "category" and "subcategory" parameters in admin/add-subcategory.php.
CVE-2025-1872
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:12
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "sadminusername" parameter in admin/add-subadmins.php.
CVE-2025-1873
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:12
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "pagetitle" and "pagedescription" parameters in admin/contactus.php.
CVE-2025-1874
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:12
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "description" parameter in admin/add-category.php.
CVE-2025-1875
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:12
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "searchtitle" parameter in search.php.
CVE-2025-1869
- EPSS 0.1%
- Veröffentlicht 03.03.2025 13:15:11
- Zuletzt bearbeitet 07.03.2025 14:45:38
SQL injection vulnerability have been found in 101news affecting version 1.0 through the "username" parameter in admin/check_avalability.php.
CVE-2024-9008
- EPSS 0.11%
- Veröffentlicht 19.09.2024 23:15:13
- Zuletzt bearbeitet 07.03.2025 14:49:58
A vulnerability classified as critical was found in SourceCodester Best Online News Portal 1.0. This vulnerability affects unknown code of the file /news-details.php of the component Comment Section. The manipulation of the argument name leads to sql...
CVE-2024-5985
- EPSS 0.06%
- Veröffentlicht 14.06.2024 02:15:10
- Zuletzt bearbeitet 07.03.2025 14:49:58
A vulnerability classified as critical has been found in SourceCodester Best Online News Portal 1.0. This affects an unknown part of the file /admin/index.php. The manipulation of the argument username leads to sql injection. It is possible to initia...