Newsboard is a niche web-publishing or content-management platform that sits in a modestly represented vendor tier but carries exposure through SQL-injection vulnerabilities affecting its core product. The recurring weakness pattern reflects common application-layer input-handling gaps in web-facing publishing systems. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Newsboard over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-1947HIGH SQL injection vulnerability in the UnbDbEncode function in unb_lib/database.lib.php in Unclassified NewsBoard (UNB) 1.6.4 allows remote attackers to execute arbitrary SQL commands | Jun 5, 2009 | 7.5 | 28 | NO | YES |
CVE-2005-3686HIGH SQL injection vulnerability in search.inc.php in Unclassified NewsBoard before 1.5.3 Patch 4 allows remote attackers to execute arbitrary SQL commands via the (1) DateFrom or (2) D | Nov 19, 2005 | 7.5 | 28 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Newsboard.
Media articles that mention a CVE ID that affects a product developed by Newsboard — matched by CVE ID, not by vendor name.