PixelPost version 1.7.3 suffers from cross site request forgery and cross site scripting vulnerabilities.
964a98117c067bf77398f14b8b9aef9de71765eded42dede10e591d423c73e57
Pixelpost version 1.7.3 suffers from a cross site scripting vulnerability.
b12ac8118bf09ea057609691a156e98a4c44163bd47842ab4492b16bad0c61bb
Pixelpost is vulnerable to an SQL Injection attack when input is passed to several POST parameters (findfid, id, selectfcat, selectfmon, selectftag). The script (admin/index.php) fails to properly sanitize the input before being returned to the user allowing the attacker to compromise the entire DB system and view sensitive information. Version 1.7.3 is affected.
058b005df3b48a0a2f6526e2d72d4ad64a02ed8dbdd5a5eeac880138515851eb
Pixelpost version 1.7.3 suffers multiple persistent cross site scripting vulnerabilities.
fcc972c67a58e71be958caa6666fcacbebf4d166d7acba0ba6ff664163a286c6
Pixelpost version 1.7.3 suffers from cross site scripting, path disclosure, and file content disclosure vulnerabilities.
ba5127fa07cebab40ddd462f88157cef02759b7aa0af5ba5aabbf6c7c60a8d11
Secunia Security Advisory - A vulnerability has been discovered in Pixelpost, which can be exploited by malicious people to conduct cross-site request forgery attacks.
d226bdb67b0e6cd00aeb1127ce04303210d3d0bc4f1c0a88230d3a2ee18e3af3
PixelPost versions 1.7.1 and below suffer from remote SQL injection and cross site scripting vulnerabilities.
754f774ab2c55d3ab2820c2e5140a1340e0ecdd44481f3c57c60c783472c20ea
Secunia Security Advisory - Digital Security Research Group has reported a vulnerability in Pixelpost, which can be exploited by malicious people to disclose sensitive information.
fa02e09c8b8208a512e8a9d02b42d10586644d7b191ecdb551b1980617dbc646
Pixelpost PhotoBlog version 1.7.1 suffers from a local file inclusion vulnerability.
005aeac44994ed5d89df09371670cda8a4f56ea9bbfbf9fe5d3872d4c3f043dc
Secunia Security Advisory - Silentz has reported a vulnerability in Pixelpost, which can be exploited by malicious people to conduct SQL injection attacks.
3c5341f837c7aaed281edb3d4605ee049cefe2968cbebfd4fceee7ef5a7cb090
PixelPost 1.7 remote blind SQL injection exploit that makes use of the Content-Length header.
891146cdd1a875d925fb1624b11e8ded3420fe0aac29009d56d2c89a4fb37d43
Pixelpost versions 1-5rc1-2 and below privilege escalation exploit.
fa0f2286d8bbbe9c0c3560251dc481a4500125d16eb02990243e47364b94adff
Pixelpost version 1.4.3 is susceptible to cross site scripting attacks.
7348d6772006dbb9c4e9e232c87483f487fd980dbc8f6b11a8a7ec24c01a19dc
Secunia Security Advisory - Aliaksandr Hartsuyeu has discovered a vulnerability in Pixelpost, which can be exploited by malicious people to conduct script insertion attacks.
d4dfd4ea10896f3d85efde55937f180ff2df469c753ca24cad1c36209166168e