Filtered by vendor Haroldbakker Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2009-4348 1 Haroldbakker 1 Hb-ns 2024-11-21 N/A
Cross-site scripting (XSS) vulnerability in index.php in Harold Bakker's NewsScript (HB-NS) 1.3 allows remote attackers to inject arbitrary web script or HTML via the topic parameter in a topic action, a different vector than CVE-2006-2146.
CVE-2009-4262 1 Haroldbakker 1 Hb-ns 2024-11-21 N/A
Harold Bakker's NewsScript (HB-NS) 1.3 allows remote attackers to obtain access to the admin control panel via a direct request to admin.php.