First published: Mon Oct 28 2019(Updated: )
pixelpost 1.7.1 has XSS
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
debian/pixelpost | ||
Pixelpost | =1.7.1-5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-4900 is classified as a medium severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
To fix CVE-2009-4900, update Pixelpost to a version that is not vulnerable to this XSS issue.
CVE-2009-4900 specifically affects Pixelpost version 1.7.1-5.
CVE-2009-4900 is an XSS (Cross-Site Scripting) vulnerability.
Yes, CVE-2009-4900 is known to be exploitable, allowing attackers to execute malicious scripts in the context of the user's session.