CVE-2011-1100: SQL Injection
Multiple SQL injection vulnerabilities in admin/index.php in Pixelpost 1.7.3 allow remote authenticated users to execute arbitrary SQL commands via the (1) findfid, (2) id, (3) selectfcat, (4) selectfmon, or (5) selectftag parameter in an images action.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1100?
CVE-2011-1100 is classified as a high severity vulnerability due to its potential for remote SQL command execution.
How do I fix CVE-2011-1100?
To fix CVE-2011-1100, update Pixelpost to the latest version that patches this vulnerability.
Who is affected by CVE-2011-1100?
CVE-2011-1100 affects users of Pixelpost version 1.7.3 who are authenticated and have access to the admin panel.
What type of vulnerability is CVE-2011-1100?
CVE-2011-1100 is an SQL injection vulnerability that allows execution of arbitrary SQL commands.
What components are involved in CVE-2011-1100?
CVE-2011-1100 involves the admin/index.php component of Pixelpost where specific parameters are exploited.