Known Vulnerabilities for products from Easyscripts
Listed below are 6 of the newest known vulnerabilities associated with the vendor "Easyscripts".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2008-1958 json | Unrestricted file upload vulnerability in the ajout_cat mode in admin/main.php in Tr Script News 2.1 allows remote authentica... | Not Provided | 2008-04-25 | 2026-04-23 |
| CVE-2008-1957 json | SQL injection vulnerability in news.php in Tr Script News 2.1 allows remote attackers to execute arbitrary SQL commands via t... | Not Provided | 2008-04-25 | 2026-04-23 |
| CVE-2001-1527 json | easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the... | Not Provided | 2001-12-31 | 2025-04-03 |
| CVE-2001-1526 json | Cross-site scripting (XSS) vulnerability in the comments action in index.php in easyNews 1.5 and earlier allows remote attack... | Not Provided | 2001-12-31 | 2025-04-03 |
| CVE-2001-1525 json | Directory traversal vulnerability in the comments action in easyNews 1.5 and earlier allows remote attackers to modify news.d... | Not Provided | 2001-12-31 | 2025-04-03 |
| CVE-2001-1437 json | easyScripts easyNews 1.5 allows remote attackers to obtain the full path of the web root via a view request with a non-intege... | Not Provided | 2001-12-01 | 2025-04-03 |