Vulnerabilities
Vulnerable Software
Haroldbakker:  Security Vulnerabilities
Cross-site scripting (XSS) vulnerability in index.php in Harold Bakker's NewsScript (HB-NS) 1.3 allows remote attackers to inject arbitrary web script or HTML via the topic parameter in a topic action, a different vector than CVE-2006-2146.
CVSS Score
4.3
EPSS Score
0.003
Published
2009-12-17
Harold Bakker's NewsScript (HB-NS) 1.3 allows remote attackers to obtain access to the admin control panel via a direct request to admin.php.
CVSS Score
7.5
EPSS Score
0.005
Published
2009-12-10


Contact Us

Shodan ® - All rights reserved