Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Toddwoolums Subscribe
Filtered by product Todd Woolums Asp News Management
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-5273 1 Toddwoolums 1 Todd Woolums Asp News Management 2017-09-28 7.5 HIGH N/A
SQL injection vulnerability in viewnews.asp in Todd Woolums ASP News Management 2.2 allows remote attackers to execute arbitrary SQL commands via the newsID parameter.
CVE-2008-5274 1 Toddwoolums 1 Todd Woolums Asp News Management 2017-08-07 5.0 MEDIUM N/A
Todd Woolums ASP News Management 2.2 allows remote attackers to obtain news items via a direct request to (1) rss.asp, (2) viewheadings.asp, or (3) viewnews.asp. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.