Vulnerabilities
Vulnerable Software
Boesch-It:  >> Simpnews  >> 2.34.0  Security Vulnerabilities
Multiple cross-site scripting (XSS) vulnerabilities in news.php in SimpNews 2.47.03 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) layout and (2) sortorder parameters.
CVSS Score
4.3
EPSS Score
0.041
Published
2010-07-25
news.php in SimpNews 2.47.3 and earlier allows remote attackers to obtain sensitive information via an invalid lang parameter, which reveals the installation path in an error message.
CVSS Score
5.0
EPSS Score
0.003
Published
2010-07-25


Contact Us

Shodan ® - All rights reserved