Show filters
268 Total Results
Displaying 81-90 of 268
Sort by:
Attacker Value
Unknown

CVE-2020-6758

Disclosure Date: January 09, 2020 (last updated February 21, 2025)
A cross-site scripting (XSS) vulnerability in Option/optionsAll.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows remote attackers to inject arbitrary web script or HTML via the ContentFrame parameter.
Attacker Value
Unknown

CVE-2020-6757

Disclosure Date: January 09, 2020 (last updated February 21, 2025)
contentHostProperties.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows authenticated attackers to remotely execute code via the name parameter.
Attacker Value
Unknown

CVE-2020-6756

Disclosure Date: January 09, 2020 (last updated February 21, 2025)
languageOptions.php in Rasilient PixelStor 5000 K:4.0.1580-20150629 (KDI Version) allows unauthenticated attackers to remotely execute code via the lang parameter.
Attacker Value
Unknown

CVE-2019-10766

Disclosure Date: November 19, 2019 (last updated November 27, 2024)
Pixie versions 1.0.x before 1.0.3, and 2.0.x before 2.0.2 allow SQL Injection in the limit() function due to improper sanitization.
Attacker Value
Unknown

CVE-2010-3305

Disclosure Date: November 12, 2019 (last updated November 27, 2024)
Cross-site request forgery (CSRF) vulnerability in pixelpost 1.7.3 could allow remote attackers to change the admin password.
Attacker Value
Unknown

CVE-2011-2897

Disclosure Date: November 12, 2019 (last updated November 27, 2024)
gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validation flaw
Attacker Value
Unknown

CVE-2009-4900

Disclosure Date: October 28, 2019 (last updated November 27, 2024)
pixelpost 1.7.1 has XSS
Attacker Value
Unknown

CVE-2009-4899

Disclosure Date: October 28, 2019 (last updated November 27, 2024)
pixelpost 1.7.1 has SQL injection
Attacker Value
Unknown

CVE-2015-5297

Disclosure Date: July 31, 2019 (last updated November 27, 2024)
An integer overflow issue has been reported in the general_composite_rect() function in pixman prior to version 0.32.8. An attacker could exploit this issue to cause an application using pixman to crash or, potentially, execute arbitrary code.
0
Attacker Value
Unknown

CVE-2019-12776

Disclosure Date: June 07, 2019 (last updated November 27, 2024)
An issue was discovered on the ENTTEC Datagate MK2, Storm 24, Pixelator, and E-Streamer MK2 with firmware 70044_update_05032019-482. They include a hard-coded SSH backdoor for remote SSH and SCP access as the root user. A command in the relocate and relocate_revB scripts copies the hardcoded key to the root user's authorized_keys file, enabling anyone with the associated private key to gain remote root access to all affected products.
0