• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-20073

February 26, 2023 by

On Netis DL4323 devices, XSS exists via the form2userconfig.cgi username parameter (User Account Configuration).

CVE-2019-20075

February 26, 2023 by

On Netis DL4323 devices, pingrtt_v6.html has XSS (Ping6 Diagnostic).

CVE-2019-20076

February 26, 2023 by

On Netis DL4323 devices, XSS exists via the form2Ddns.cgi username parameter (DynDns settings of the Dynamic DNS Configuration).

CVE-2019-20008

February 26, 2023 by

In Archery before 1.3, inserting an XSS payload into a project name (either by creating a new project or editing an existing one) will result in stored XSS on the vulnerability-scan scheduling page.

CVE-2019-20042

February 26, 2023 by

In wp-includes/formatting.php in WordPress 3.7 to 5.3.0, the function wp_targeted_link_rel() can be used in a particular way to result in a stored cross-site scripting (XSS) vulnerability. This has been patched in WordPress 5.3.1, along with all the previous WordPress versions from 3.7 to 5.3 via a minor release.

CVE-2019-19968

February 26, 2023 by

PandoraFMS 742 suffers from multiple XSS vulnerabilities, affecting the Agent Management, Report Builder, and Graph Builder components. An authenticated user can inject dangerous content into a data store that is later read and included in dynamic content.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1062
  • Go to page 1063
  • Go to page 1064
  • Go to page 1065
  • Go to page 1066
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE