Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
pix vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2023-28333
The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not appear to be implemented/exploitable anywhere in the core Moodle LMS).
Moodle Moodle 4.0.0
Moodle Moodle 3.9.0
Moodle Moodle 4.1.0
Moodle Moodle 3.11.0
Moodle Moodle
Moodle Moodle 4.1.1
Fedoraproject Fedora 36
8
CVSSv3
CVE-2023-22304
OS command injection vulnerability in PIX-RT100 versions RT100_TEQ_2.1.1_EQ101 and RT100_TEQ_2.1.2_EQ101 allows a network-adjacent attacker who can access product settings to execute an arbitrary OS command.
Pixela Pix-rt100 Firmware 2.1.1 Eq101
Pixela Pix-rt100 Firmware 2.1.2 Eq101
6.5
CVSSv3
CVE-2023-22316
Hidden functionality vulnerability in PIX-RT100 versions RT100_TEQ_2.1.1_EQ101 and RT100_TEQ_2.1.2_EQ101 allows a network-adjacent malicious user to access the product via undocumented Telnet or SSH services.
Pixela Pix-rt100 Firmware 2.1.1 Eq101
Pixela Pix-rt100 Firmware 2.1.2 Eq101
5.4
CVSSv3
CVE-2021-43729
Pix-Link MiNi Router 28K.MiniRouter.20190211 exists to contain a stored cross-site scripting (XSS) vulnerability due to an unsanitized Security Key parameter.
Pix-link Lv-wr09 Firmware 28k.minirouter.20190211
5.4
CVSSv3
CVE-2021-43728
Pix-Link MiNi Router 28K.MiniRouter.20190211 exists to contain a stored cross-site scripting (XSS) vulnerability due to an unsanitized SSID parameter.
Pix-link Lv-wr09 Firmware 28k.minirouter.20190211
6.1
CVSSv3
CVE-2020-24104
XSS on the PIX-Link Repeater/Router LV-WR07 with firmware v28K.Router.20170904 allows malicious users to steal credentials without being connected to the network. The attack vector is a crafted ESSID, as demonstrated by the wireless.htm SET2 parameter.
Pix-link Lv-wr07 Firmware 28k.router.20170904
7.8
CVSSv3
CVE-2019-20326
A heap-based buffer overflow in _cairo_image_surface_create_from_jpeg() in extensions/cairo_io/cairo-image-surface-jpeg.c in GNOME gThumb prior to 3.8.3 and Linux Mint Pix prior to 2.4.5 allows malicious users to cause a crash and potentially execute arbitrary code via a crafted ...
Gnome Gthumb
Linuxmint Pix
Debian Debian Linux 9.0
6.1
CVSSv3
CVE-2019-11877
XSS on the PIX-Link Repeater/Router LV-WR09 with firmware v28K.MiniRouter.20180616 allows malicious users to steal credentials without being connected to the network. The attack vector is a crafted ESSID.
Pix-link Lv-wr09 Firmware 28k.minirouter.20180616
7.5
CVSSv3
CVE-2018-14707
Directory traversal in the Drobo Pix web application on Drobo 5N2 NAS version 4.0.5-13.28.96115 allows unauthenticated malicious users to upload files to arbitrary locations.
Drobo 5n2 Firmware 4.0.5-13.28.96115
4.2
CVSSv3
CVE-2017-6770
Cisco IOS 12.0 up to and including 15.6, Adaptive Security Appliance (ASA) Software 7.0.1 up to and including 9.7.1.2, NX-OS 4.0 up to and including 12.0, and IOS XE 3.6 up to and including 3.18 are affected by a vulnerability involving the Open Shortest Path First (OSPF) Routing...
Cisco Ios 12.1\\(14\\)e7
Cisco Ios 12.3\\(3f\\)
Cisco Ios 12.0\\(16\\)sc3
Cisco Nx-os 5.2\\(1\\)n1\\(4\\)
Cisco Ios 12.4\\(11\\)xw6
Cisco Ios 12.2\\(28\\)sb12
Cisco Nx-os 11.1\\(4g\\)
Cisco Ios 12.1\\(5\\)xm1
Cisco Ios 12.4\\(2\\)t2
Cisco Ios 12.2\\(2\\)xa2
Cisco Ios 15.4\\(2\\)s2
Cisco Ios Xe 3.13.2s
Cisco Ios 12.2\\(18\\)ixa
Cisco Ios 12.2\\(19c\\)
Cisco Nx-os 6.0\\(2\\)u5\\(1\\)
Cisco Nx-os 5.2\\(1\\)n1\\(2a\\)
Cisco Nx-os 1.1\\(0.825a\\)
Cisco Ios 12.0\\(21\\)s7
Cisco Ios 12.1\\(2\\)e1
Cisco Ios 12.0\\(16\\)s3
Cisco Ios 12.1\\(19\\)ew
Cisco Ios 12.3\\(14\\)ym4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-40673
CVE-2024-36674
CVE-2024-27348
unspecified
CVE-2024-24919
CVE-2024-4870
malicious code
CVE-2024-2019
hard-coded
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »