VYPR

Photoblog

by Pixelpost

CVEs (3)

  • CVE-2006-0409Jan 25, 2006
    risk 0.04cvss epss 0.08

    Cross-site scripting (XSS) vulnerability in index.php in Pixelpost Photoblog 1.4.3 allows remote attackers to inject arbitrary web script or HTML via the "Add Comment" field in a comment popup.

  • CVE-2007-3134Jun 8, 2007
    risk 0.03cvss epss 0.00

    Multiple cross-site scripting (XSS) vulnerabilities in atomPhotoBlog.php in Atom PhotoBlog 1.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) Your Name, (2) Your Homepage, and (3) Your Comment fields, when using "Approve Comments."

  • CVE-2007-3135Jun 8, 2007
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in atomPhotoBlog.php in Atom Photoblog 1.0.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the tag parameter.