Vulnerability Details CVE-2005-1583
1Two News 1.0 allows remote attackers to (1) delete images for new stories via a direct request to admin/delete.php or (2) upload arbitrary images via a direct request to admin/upload.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2005-1583
-
cpe:2.3:a:1two:1two_news:1.0