Skintech maintains a narrow portfolio of web content and information-management applications, including PHP-based news and file-exchange products that serve modest deployment bases. The observed vulnerability exposure aligns with the application-layer scope of these tools, though the limited disclosure history makes structural weakness patterns difficult to characterize durably. Current severity, exploitation, and CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Skintech over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-1557HIGH Multiple SQL injection vulnerabilities in X-Changer 0.2 allow remote attackers to execute arbitrary SQL commands via the (1) from and (2) into parameters in a calculate action, and | Mar 31, 2006 | 7.5 | 28 | NO | YES |
CVE-2004-0327MEDIUM Directory traversal vulnerability in functions.php in PhpNewsManager 1.46 allows remote attackers to retrieve arbitrary files via .. (dot dot) sequences in the clang parameter. | Nov 23, 2004 | 5.0 | 25 | NO | YES |
CVE-2006-1560HIGH Multiple SQL injection vulnerabilities in SkinTech phpNewsManager 1.48 allow remote attackers to execute arbitrary SQL commands via unspecified parameters, possibly (1) id and (2) | Mar 31, 2006 | 7.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Skintech.
Media articles that mention a CVE ID that affects a product developed by Skintech — matched by CVE ID, not by vendor name.