Filtered by vendor Photopost Subscriptions
Total 22 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2005-0777 1 Photopost 1 Photopost Php Pro 2025-04-03 N/A
Multiple cross-site scripting (XSS) vulnerabilities in PhotoPost PHP 5.0 RC3 allow remote attackers to inject arbitrary web script or HTML via (1) the check_tags function or (2) the editbio field in the user profile.
CVE-2005-0776 1 Photopost 1 Photopost Php Pro 2025-04-03 N/A
adm-photo.php in PhotoPost PHP 5.0 RC3 does not properly verify administrative privileges before manipulating photos, which could allow remote attackers to manipulate other users' photos.