Show filters
268 Total Results
Displaying 81-90 of 268
Sort by:
Attacker Value
Unknown
CVE-2020-6758
Disclosure Date: January 09, 2020 (last updated February 21, 2025)
A cross-site scripting (XSS) vulnerability in Option/optionsAll.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows remote attackers to inject arbitrary web script or HTML via the ContentFrame parameter.
0
Attacker Value
Unknown
CVE-2020-6757
Disclosure Date: January 09, 2020 (last updated February 21, 2025)
contentHostProperties.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows authenticated attackers to remotely execute code via the name parameter.
0
Attacker Value
Unknown
CVE-2020-6756
Disclosure Date: January 09, 2020 (last updated February 21, 2025)
languageOptions.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows unauthenticated attackers to remotely execute code via the lang parameter.
0
Attacker Value
Unknown
CVE-2019-10766
Disclosure Date: November 19, 2019 (last updated November 27, 2024)
Pixie versions 1.0.x before 1.0.3, and 2.0.x before 2.0.2 allow SQL Injection in the limit() function due to improper sanitization.
0
Attacker Value
Unknown
CVE-2010-3305
Disclosure Date: November 12, 2019 (last updated November 27, 2024)
Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password.
0
Attacker Value
Unknown
CVE-2011-2897
Disclosure Date: November 12, 2019 (last updated November 27, 2024)
gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validation flaw
0
Attacker Value
Unknown
CVE-2009-4900
Disclosure Date: October 28, 2019 (last updated November 27, 2024)
pixelpost 1.7.1 has XSS
0
Attacker Value
Unknown
CVE-2009-4899
Disclosure Date: October 28, 2019 (last updated November 27, 2024)
pixelpost 1.7.1 has SQL injection
0
Attacker Value
Unknown
CVE-2015-5297
Disclosure Date: July 31, 2019 (last updated November 27, 2024)
An integer overflow issue has been reported in the general_composite_rect() function in pixman prior to version 0.32.8. An attacker could exploit this issue to cause an application using pixman to crash or, potentially, execute arbitrary code.
0
Attacker Value
Unknown
CVE-2019-12776
Disclosure Date: June 07, 2019 (last updated November 27, 2024)
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They include a hard-coded SSH backdoor for remote SSH and SCP access as the root user. A command in the relocate and relocate_revB scripts copies the hardcoded key to the root user's authorized_keys file, enabling anyone with the associated private key to gain remote root access to all affected products.
0