Coderpixel maintains a human resource management application (Advanced HRM) with a narrowly scoped vulnerability footprint. The durable signal centers on file-upload handling weaknesses that permit unrestricted uploads of potentially dangerous file types, a risk inherent to web-based document and credential processing. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Coderpixel over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-18382HIGH Advanced HRM 1.6 allows Remote Code Execution via PHP code in a .php file to the user/update-user-avatar URI, which can be accessed through an "Update Profile" "Change Picture" (ak | Oct 16, 2018 | 8.8 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Coderpixel.
Media articles that mention a CVE ID that affects a product developed by Coderpixel — matched by CVE ID, not by vendor name.