Перейти к содержимому
Noroxi

Записи pixelpost

17 опубликованных записей вендора pixelpost.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
4
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Все записи

17 записей
  • CVE-2009-4899
    39Наблюдать

    pixelpost 1.7.1 has SQL injection

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    pixelpost · pixelpost28 окт. 2019 г.

  • CVE-2010-3305
    35Наблюдать

    Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    pixelpost · pixelpost12 нояб. 2019 г.

  • CVE-2006-1104
    30Наблюдать

    Multiple SQL injection vulnerabilities in Pixelpost 1.5 beta 1 and earlier allow remote attackers to execute arbitrary SQL commands via (1)

    ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %

    pixelpost · pixelpost9 мар. 2006 г.

  • CVE-2018-0604
    29Наблюдать

    Pixelpost v1.7.3 and earlier allows remote code execution via unspecified vectors.

    ВысокаяCVSS 7,2Эксплойта нетEPSS 2 %

    pixelpost · pixelpost26 июн. 2018 г.

  • CVE-2008-3365
    28Наблюдать

    Directory traversal vulnerability in index.php in Pixelpost 1.7.1 on Windows, when register_globals is enabled, allows remote attackers to i

    СредняяCVSS 6,8Proof of conceptEPSS 4 %

    pixelpost · pixelpost30 июл. 2008 г.

  • CVE-2008-0358
    28Наблюдать

    SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parame

    СредняяCVSS 6,8Proof of conceptEPSS 2 %

    pixelpost · pixelpost18 янв. 2008 г.

  • CVE-2018-0606
    28Наблюдать

    SQL injection vulnerability in the Pixelpost v1.7.3 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via

    ВысокаяCVSS 7,2Эксплойта нетEPSS 1 %

    pixelpost · pixelpost26 июн. 2018 г.

  • CVE-2011-1100
    26Наблюдать

    Multiple SQL injection vulnerabilities in admin/index.php in Pixelpost 1.7.3 allow remote authenticated users to execute arbitrary SQL comma

    СредняяCVSS 6,5Proof of conceptEPSS 1 %

    pixelpost · pixelpost25 февр. 2011 г.

  • CVE-2009-4900
    24Наблюдать

    pixelpost 1.7.1 has XSS

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    pixelpost · pixelpost28 окт. 2019 г.

  • CVE-2018-0605
    24Наблюдать

    Cross-site scripting vulnerability in Pixelpost v1.7.3 and earlier allows remote attackers to inject arbitrary web script or HTML via unspec

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    pixelpost · pixelpost26 июн. 2018 г.

  • CVE-2006-1105
    21Наблюдать

    Pixelpost 1.5 beta 1 and earlier allows remote attackers to obtain configuration information via a direct request to includes/phpinfo.php, w

    СредняяCVSS 5,0Эксплойта нетEPSS 2 %

    pixelpost · pixelpost9 мар. 2006 г.

  • CVE-2006-2890
    20Наблюдать

    Pixelpost 1-5rc1-2 and earlier, when register_globals is enabled, allows remote attackers to gain administrator privileges and conduct other

    СредняяCVSS 5,1Эксплойта нетEPSS 1 %

    pixelpost · pixelpost7 июн. 2006 г.

  • CVE-2011-3792
    20Наблюдать

    Pixelpost 1.7.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation

    СредняяCVSS 5,0Эксплойта нетEPSS 1 %

    pixelpost · pixelpost23 сент. 2011 г.

  • CVE-2006-2889
    20Наблюдать

    Multiple SQL injection vulnerabilities in index.php in Pixelpost 1-5rc1-2 and earlier allow remote attackers to execute arbitrary SQL comman

    СредняяCVSS 5,1Proof of conceptEPSS 1 %

    pixelpost · pixelpost7 июн. 2006 г.

  • CVE-2006-0409
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in index.php in Pixelpost Photoblog 1.4.3 allows remote attackers to inject arbitrary web script or

    СредняяCVSS 4,3Proof of conceptEPSS 2 %

    pixelpost · photoblog24 янв. 2006 г.

  • CVE-2006-1106
    18Наблюдать

    Cross-site scripting (XSS) vulnerability in Pixelpost 1.5 beta 1 and earlier allows remote attackers to inject arbitrary web script or HTML

    СредняяCVSS 4,3Эксплойта нетEPSS 2 %

    pixelpost · pixelpost9 мар. 2006 г.

  • CVE-2006-2891
    11Наблюдать

    Cross-site scripting (XSS) vulnerability in admin/index.php for Pixelpost 1-5rc1-2 and earlier allows remote attackers to inject arbitrary H

    НизкаяCVSS 2,6Эксплойта нетEPSS 2 %

    pixelpost · pixelpost7 июн. 2006 г.