Adminnewstools maintains a focused administrative and news-management tool where the observed vulnerability surface centers on path-traversal weaknesses that enable unintended file-system access. Treat this as a compact vendor profile rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Adminnewstools over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-2558HIGH system/message.php in Admin News Tools 2.5 does not properly restrict access, which allows remote attackers to post news messages via a direct request. | Jul 21, 2009 | 7.5 | 28 | NO | YES |
CVE-2009-2557MEDIUM Directory traversal vulnerability in system/download.php in Admin News Tools 2.5 allows remote attackers to read arbitrary files via a .. (dot dot) in the fichier parameter. | Jul 21, 2009 | 5.0 | 25 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Adminnewstools.
Media articles that mention a CVE ID that affects a product developed by Adminnewstools — matched by CVE ID, not by vendor name.