Skip to content
Noroxi

pivot records

6 published records for vendor pivot.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

6 records
  • CVE-2006-3531
    33Monitor

    includes/editor/insert_image.php in Pivot 1.30 RC2 and earlier creates the authentication credentials from parameters, which allows remote a

    HighCVSS 7.5Proof of conceptEPSS 10%

    pivot · pivotJul 12, 2006

  • CVE-2006-3533
    25Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in Pivot 1.30 RC2 and earlier, when register_globals is enabled, allow remote attackers

    MediumCVSS 5.8Proof of conceptEPSS 6%

    pivot · pivotJul 12, 2006

  • CVE-2006-3532
    22Monitor

    PHP file inclusion vulnerability in includes/edit_new.php in Pivot 1.30 RC2 and earlier, when register_globals is enabled, allows remote att

    MediumCVSS 5.1Proof of conceptEPSS 8%

    pivot · pivotJul 12, 2006

  • CVE-2008-3128
    21Monitor

    Directory traversal vulnerability in search.php in Pivot 1.40.5 allows remote attackers to read arbitrary files via a ..

    MediumCVSS 5.0Proof of conceptEPSS 4%

    pivot · pivotJul 10, 2008

  • CVE-2009-2134
    21Monitor

    pivot/tb.php in Pivot 1.40.4 and 1.40.7 allows remote attackers to obtain sensitive information via an invalid url parameter, which reveals

    MediumCVSS 5.0Proof of conceptEPSS 2%

    pivot · pivotJun 19, 2009

  • CVE-2009-2133
    18Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in Pivot 1.40.4 and 1.40.7 allow remote attackers to inject arbitrary web script or HTML

    MediumCVSS 4.3Proof of conceptEPSS 4%

    pivot · pivotJun 19, 2009