Vulnerabilities > Pixelpost > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2019-11-12 | CVE-2010-3305 | Cross-Site Request Forgery (CSRF) vulnerability in Pixelpost 1.7.3 Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password. | 8.8 |
2018-06-26 | CVE-2018-0606 | SQL Injection vulnerability in Pixelpost 1.7.3 SQL injection vulnerability in the Pixelpost v1.7.3 and earlier allows remote authenticated attackers to execute arbitrary SQL commands via unspecified vectors. | 7.2 |
2018-06-26 | CVE-2018-0604 | Unspecified vulnerability in Pixelpost 1.7.3 Pixelpost v1.7.3 and earlier allows remote code execution via unspecified vectors. | 7.2 |