Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Pixelpost HIGH 8.8
CVE-2010-3305

Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password.

No fix yet
Fix from $1,950 2019-11-12
Pixelpost CRITICAL 9.8
CVE-2009-4899

pixelpost 1.7.1 has SQL injection

No fix yet
Fix from $2,300 2019-10-28
Pixelpost MEDIUM 6.1
CVE-2009-4900

pixelpost 1.7.1 has XSS

No fix yet
Fix from $1,600 2019-10-28
Pixelpost HIGH 7.2
CVE-2018-0604

Pixelpost v1.7.3 and earlier allows remote code execution via unspecified vectors.

No fix yet
Fix from $1,950 2018-06-26
Pixelpost HIGH 7.2
CVE-2018-0606

SQL injection vulnerability in the Pixelpost v1.7.3 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecifi…

Mitigation only
Fix from $1,950 2018-06-26
Pixelpost MEDIUM 6.1
CVE-2018-0605

Cross-site scripting vulnerability in Pixelpost v1.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vec…

Fix: after 1.7.3
Fix from $1,600 2018-06-26
Pixelpost MEDIUM 5.0
CVE-2011-3792

Pixelpost 1.7.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a…

Mitigation only
Fix from $1,600 2011-09-24
Pixelpost MEDIUM 6.5
CVE-2011-1100

Multiple SQL injection vulnerabilities in admin/index.php in Pixelpost 1.7.3 allow remote authenticated users to execute arbitrary SQL commands via t…

No fix yet
Fix from $1,600 2011-02-25
Pixelpost MEDIUM 6.8
CVE-2008-3365

Directory traversal vulnerability in index.php in Pixelpost 1.7.1 on Windows, when register_globals is enabled, allows remote attackers to include an…

Patch available
Fix from $1,600 2008-07-30
Pixelpost MEDIUM 6.8
CVE-2008-0358

SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter.

Patch available
Fix from $1,600 2008-01-18
Pixelpost MEDIUM 5.1
CVE-2006-2889

Multiple SQL injection vulnerabilities in index.php in Pixelpost 1-5rc1-2 and earlier allow remote attackers to execute arbitrary SQL commands, and l…

Fix: after 1.5_rc1
Fix from $1,600 2006-06-07
Pixelpost MEDIUM 5.1
CVE-2006-2890

Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileges and conduct other attacks …

No fix yet
Fix from $1,600 2006-06-07
Pixelpost HIGH 7.5
CVE-2006-1104

Multiple SQL injection vulnerabilities in Pixelpost 1.5 beta 1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the showi…

No fix yet
Fix from $1,950 2006-03-09
Pixelpost MEDIUM 5.0
CVE-2006-1105

Pixelpost 1.5 beta 1 and earlier allows remote attackers to obtain configuration information via a direct request to includes/phpinfo.php, which call…

No fix yet
Fix from $1,600 2006-03-09