Vulnerabilities (CVE)

Filtered by vendor Web3king Subscribe
Filtered by product Web3news
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-4452 1 Web3king 1 Web3news 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in security/include/_class.security.php in Web3news 0.95 and earlier, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the PHPSECURITYADMIN_PATH parameter.