Vulnerability index

Browse CVEs

14 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2010-3305 Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password. Pixelpost No fix yet Fix from $1,9502019-11-12 CRITICAL 9.8 CVE-2009-4899 pixelpost 1.7.1 has SQL injection Pixelpost No fix yet Fix from $2,3002019-10-28 MEDIUM 6.1 CVE-2009-4900 pixelpost 1.7.1 has XSS Pixelpost No fix yet Fix from $1,6002019-10-28 HIGH 7.2 CVE-2018-0604 Pixelpost v1.7.3 and earlier allows remote code execution via unspecified vectors. Pixelpost No fix yet Fix from $1,9502018-06-26 HIGH 7.2 CVE-2018-0606 SQL injection vulnerability in the Pixelpost v1.7.3 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecifi… Pixelpost Mitigation only Fix from $1,9502018-06-26 MEDIUM 6.1 CVE-2018-0605 Cross-site scripting vulnerability in Pixelpost v1.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vec… Pixelpost after 1.7.3 Fix from $1,6002018-06-26 MEDIUM 5.0 CVE-2011-3792 Pixelpost 1.7.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in a… Pixelpost Mitigation only Fix from $1,6002011-09-24 MEDIUM 6.5 CVE-2011-1100 Multiple SQL injection vulnerabilities in admin/index.php in Pixelpost 1.7.3 allow remote authenticated users to execute arbitrary SQL commands via t… Pixelpost No fix yet Fix from $1,6002011-02-25 MEDIUM 6.8 CVE-2008-3365 Directory traversal vulnerability in index.php in Pixelpost 1.7.1 on Windows, when register_globals is enabled, allows remote attackers to include an… Pixelpost Patch available Fix from $1,6002008-07-30 MEDIUM 6.8 CVE-2008-0358 SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter. Pixelpost Patch available Fix from $1,6002008-01-18 MEDIUM 5.1 CVE-2006-2889 Multiple SQL injection vulnerabilities in index.php in Pixelpost 1-5rc1-2 and earlier allow remote attackers to execute arbitrary SQL commands, and l… Pixelpost after 1.5_rc1 Fix from $1,6002006-06-07 MEDIUM 5.1 CVE-2006-2890 Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileges and conduct other attacks … Pixelpost No fix yet Fix from $1,6002006-06-07 HIGH 7.5 CVE-2006-1104 Multiple SQL injection vulnerabilities in Pixelpost 1.5 beta 1 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the showi… Pixelpost No fix yet Fix from $1,9502006-03-09 MEDIUM 5.0 CVE-2006-1105 Pixelpost 1.5 beta 1 and earlier allows remote attackers to obtain configuration information via a direct request to includes/phpinfo.php, which call… Pixelpost No fix yet Fix from $1,6002006-03-09