P News is a narrowly scoped product with a modest vulnerability footprint. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by P News over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-5434HIGH PHP remote file inclusion vulnerability in p-news.php in P-News 1.16 and 1.17 allows remote attackers to execute arbitrary PHP code via a URL in the pn_lang parameter. | Oct 20, 2006 | 7.5 | 29 | NO | YES |
CVE-2006-6888MEDIUM P-News 1.16 and 1.17 store sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the administrative account name and pa | Dec 31, 2006 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by P News.
Media articles that mention a CVE ID that affects a product developed by P News — matched by CVE ID, not by vendor name.