296,322
Total vulnerabilities in the database
Install.php in BosDev BosNews 4 and 5 does not require authentication for replacing an existing product installation or creating a new admin account, which allows remote attackers to cause a denial of service (overwritten files) and possibly obtain administrative access.
Software | From | Fixed in |
---|---|---|
bosdev / bosnews | 4 | 4.x |
bosdev / bosnews | 5 | 5.x |