• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors
Home » CVE’s

CVE’s


CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
CVE-2019-20528
2020-03-20
N/A
6.1 MEDIUM
Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp username parameter.
CVE-2019-20527
2020-03-19
N/A
6.1 MEDIUM
Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp serverURL parameter.
CVE-2019-20526
2020-03-20
N/A
6.1 MEDIUM
Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp password parameter.
CVE-2019-20525
2020-03-20
N/A
6.1 MEDIUM
Ignite Realtime Openfire 4.4.1 allows XSS via the setup/setup-datasource-standard.jsp driver parameter.
CVE-2019-20524
2020-03-19
N/A
6.1 MEDIUM
ilchCMS 2.1.23 allows XSS via the index.php/partner/index Banner parameter.
CVE-2019-20523
2020-03-19
N/A
6.1 MEDIUM
ilchCMS 2.1.23 allows XSS via the index.php/partner/index Name parameter.
CVE-2019-20522
2020-03-19
N/A
6.1 MEDIUM
ilchCMS 2.1.23 allows XSS via the index.php/partner/index Link parameter.
CVE-2019-20521
2020-03-19
N/A
6.1 MEDIUM
ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/ URI.
CVE-2019-20520
2020-03-19
N/A
6.1 MEDIUM
ERPNext 11.1.47 allows reflected XSS via the PATH_INFO to the api/method/ URI.
CVE-2019-2052
2021-07-21
N/A
7.5 HIGH
In VisitPointers of heap.cc, there is a possible out-of-bounds read due to type confusion. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.1 Android-9 Android ID: A-117556606
« Previous 1 … 5,702 5,703 5,704 5,705 5,706 … 11,258 Next »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE