Skip to content
Noroxi

pixelpost records

17 published records for vendor pixelpost.

All records

17 records
  • CVE-2009-4899
    39Monitor

    pixelpost 1.7.1 has SQL injection

    CriticalCVSS 9.8No exploitEPSS 1%

    pixelpost · pixelpostOct 28, 2019

  • CVE-2010-3305
    35Monitor

    Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password.

    HighCVSS 8.8No exploitEPSS 1%

    pixelpost · pixelpostNov 12, 2019

  • CVE-2006-1104
    30Monitor

    Multiple SQL injection vulnerabilities in Pixelpost 1.5 beta 1 and earlier allow remote attackers to execute arbitrary SQL commands via (1)

    HighCVSS 7.5No exploitEPSS 2%

    pixelpost · pixelpostMar 9, 2006

  • CVE-2018-0604
    29Monitor

    Pixelpost v1.7.3 and earlier allows remote code execution via unspecified vectors.

    HighCVSS 7.2No exploitEPSS 2%

    pixelpost · pixelpostJun 26, 2018

  • CVE-2008-3365
    28Monitor

    Directory traversal vulnerability in index.php in Pixelpost 1.7.1 on Windows, when register_globals is enabled, allows remote attackers to i

    MediumCVSS 6.8Proof of conceptEPSS 4%

    pixelpost · pixelpostJul 30, 2008

  • CVE-2008-0358
    28Monitor

    SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parame

    MediumCVSS 6.8Proof of conceptEPSS 2%

    pixelpost · pixelpostJan 18, 2008

  • CVE-2018-0606
    28Monitor

    SQL injection vulnerability in the Pixelpost v1.7.3 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via

    HighCVSS 7.2No exploitEPSS 1%

    pixelpost · pixelpostJun 26, 2018

  • CVE-2011-1100
    26Monitor

    Multiple SQL injection vulnerabilities in admin/index.php in Pixelpost 1.7.3 allow remote authenticated users to execute arbitrary SQL comma

    MediumCVSS 6.5Proof of conceptEPSS 1%

    pixelpost · pixelpostFeb 25, 2011

  • CVE-2009-4900
    24Monitor

    pixelpost 1.7.1 has XSS

    MediumCVSS 6.1No exploitEPSS 1%

    pixelpost · pixelpostOct 28, 2019

  • CVE-2018-0605
    24Monitor

    Cross-site scripting vulnerability in Pixelpost v1.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspec

    MediumCVSS 6.1No exploitEPSS 1%

    pixelpost · pixelpostJun 26, 2018

  • CVE-2006-1105
    21Monitor

    Pixelpost 1.5 beta 1 and earlier allows remote attackers to obtain configuration information via a direct request to includes/phpinfo.php, w

    MediumCVSS 5.0No exploitEPSS 2%

    pixelpost · pixelpostMar 9, 2006

  • CVE-2006-2890
    20Monitor

    Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileges and conduct other

    MediumCVSS 5.1No exploitEPSS 1%

    pixelpost · pixelpostJun 7, 2006

  • CVE-2011-3792
    20Monitor

    Pixelpost 1.7.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation

    MediumCVSS 5.0No exploitEPSS 1%

    pixelpost · pixelpostSep 23, 2011

  • CVE-2006-2889
    20Monitor

    Multiple SQL injection vulnerabilities in index.php in Pixelpost 1-5rc1-2 and earlier allow remote attackers to execute arbitrary SQL comman

    MediumCVSS 5.1Proof of conceptEPSS 1%

    pixelpost · pixelpostJun 7, 2006

  • CVE-2006-0409
    18Monitor

    Cross-site scripting (XSS) vulnerability in index.php in Pixelpost Photoblog 1.4.3 allows remote attackers to inject arbitrary web script or

    MediumCVSS 4.3Proof of conceptEPSS 2%

    pixelpost · photoblogJan 24, 2006

  • CVE-2006-1106
    18Monitor

    Cross-site scripting (XSS) vulnerability in Pixelpost 1.5 beta 1 and earlier allows remote attackers to inject arbitrary web script or HTML

    MediumCVSS 4.3No exploitEPSS 2%

    pixelpost · pixelpostMar 9, 2006

  • CVE-2006-2891
    11Monitor

    Cross-site scripting (XSS) vulnerability in admin/index.php for Pixelpost 1-5rc1-2 and earlier allows remote attackers to inject arbitrary H

    LowCVSS 2.6No exploitEPSS 2%

    pixelpost · pixelpostJun 7, 2006