Package: pixelpost
Version: 1.7.1-5
Severity: grave
Tags: security

Hi,

Multiple vulnerabilities have been reported against pixelpost.
Full details can be found by following this thread:
http://marc.info/?t=128470282500002&r=1&w=2

CVE-wise they are:

CSRF: CVE-2010-3305

SQL injection fixed in 1.7.3: CVE-2009-4899

XSS fixed in 1.7.3: CVE-2009-4900

But there are a few more that I just reported.

Cheers,
-- 
Raphael Geissert - Debian Developer
www.debian.org - get.debian.net



-- 
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to