PiwikCVEs & Vulnerabilities
2 CVEs affecting Piwik products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
piwik 1piwik mobile 2 1
CVE-2014-5871MEDIUM
The Piwik Mobile 2 (aka org.piwik.mobile2) application 2.0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
11 Sep 2014
5.4
CVSS
CVE-2010-1453MEDIUMpoc
Cross-site scripting (XSS) vulnerability in the Login form in Piwik 0.1.6 through 0.5.5 allows remote attackers to inject arbitrary web script or HTML via the form_url parameter.
7 May 2010
4.3
CVSS
← PrevPage 1 / 1Next →