Vulnerabilities > Pixelite

DATE CVE VULNERABILITY TITLE RISK
2019-08-22 CVE-2013-7480 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.3.6.1 for WordPress has XSS via the booking form and admin areas.
network
low complexity
pixelite CWE-79
6.1
2019-08-22 CVE-2013-7479 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.3.9 for WordPress has XSS in the search form field.
network
low complexity
pixelite CWE-79
6.1
2019-08-22 CVE-2013-7478 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.5 for WordPress has XSS via EM_Ticket::get_post.
network
low complexity
pixelite CWE-79
6.1
2019-08-22 CVE-2013-7477 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.5.2 for WordPress has XSS in the booking form.
network
low complexity
pixelite CWE-79
6.1
2019-08-22 CVE-2012-6716 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.1.7 for WordPress has XSS via JSON call links.
network
low complexity
pixelite CWE-79
6.1
2019-08-13 CVE-2015-9300 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.5.7 for WordPress has multiple XSS issues.
network
low complexity
pixelite CWE-79
6.1
2019-08-13 CVE-2015-9299 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.5.7.1 for WordPress has DOM XSS.
network
low complexity
pixelite CWE-79
6.1
2019-08-13 CVE-2015-9298 Code Injection vulnerability in Pixelite Events Manager
The events-manager plugin before 5.6 for WordPress has code injection.
network
low complexity
pixelite CWE-94
critical
9.8
2019-08-13 CVE-2015-9297 Cross-site Scripting vulnerability in Pixelite Events Manager
The events-manager plugin before 5.6 for WordPress has XSS.
network
low complexity
pixelite CWE-79
6.1
2019-04-12 CVE-2018-13137 Cross-site Scripting vulnerability in Pixelite Events Manager 5.9.4
The Events Manager plugin 5.9.4 for WordPress has XSS via the dbem_event_reapproved_email_body parameter to the wp-admin/edit.php?post_type=event&page=events-manager-options URI.
network
low complexity
pixelite CWE-79
4.8