Vulnerabilities > Sixapart > Critical

DATE CVE VULNERABILITY TITLE RISK
2022-08-24 CVE-2022-38078 Code Injection vulnerability in Sixapart Movable Type
Movable Type XMLRPC API provided by Six Apart Ltd.
network
low complexity
sixapart CWE-94
critical
9.8
2010-12-09 CVE-2010-4511 Unspecified vulnerability in Movable Type (CVE-2010-4511)
Unspecified vulnerability in Movable Type 4.x before 4.35 and 5.x before 5.04 has unknown impact and attack vectors related to the "dynamic publishing error message."
network
low complexity
sixapart
critical
10.0
2010-12-09 CVE-2010-4509 Security vulnerability in Movable Type
Multiple unspecified vulnerabilities in Movable Type 4.x before 4.35 and 5.x before 5.04 have unknown impact and attack vectors related to the (1) mt:AssetProperty and (2) mt:EntryFlag tags.
network
low complexity
sixapart
critical
10.0
2009-03-03 CVE-2009-0752 Unspecified vulnerability in Sixapart Movable Type
Unspecified vulnerability in Movable Type Pro and Community Solution 4.x before 4.24 has unknown impact and attack vectors, possibly related to the password recovery mechanism.
network
low complexity
sixapart
critical
10.0