• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-13182

February 26, 2023 by

A stored cross-site scripting (XSS) vulnerability exists in the web UI of SolarWinds Serv-U FTP Server 15.1.7.

CVE-2019-13186

February 26, 2023 by

In MiniCMS V1.10, stored XSS was found in mc-admin/post-edit.php via the tags box. An attacker can use it to get a user’s cookie. This is different from CVE-2018-10296, CVE-2018-16233, and CVE-2018-20520.

CVE-2019-13189

February 26, 2023 by

In Knowage through 6.1.1, there is XSS via the start_url or user_id field to the ChangePwdServlet page.

CVE-2019-13198

February 26, 2023 by

The web application of several Kyocera printers (such as the ECOSYS M5526cdw 2R7_2000.001.701) was affected by Stored XSS. Successful exploitation of this vulnerability can lead to session hijacking of the administrator in the web application or the execution of unwanted actions.

CVE-2019-13122

February 26, 2023 by

A Cross Site Scripting (XSS) vulnerability exists in the template tag used to render message ids in Patchwork v1.1 through v2.1.x. This allows an attacker to insert JavaScript or HTML into the patch detail page via an email sent to a mailing list consumed by Patchwork. This affects the function msgid in templatetags/patch.py. Patchwork versions v2.1.4 and v2.0.4 will contain the fix.

CVE-2019-13127

February 26, 2023 by

An issue was discovered in mxGraph through 4.0.0, related to the “draw.io Diagrams” plugin before 8.3.14 for Confluence and other products. Improper input validation/sanitization of a color field leads to XSS. This is associated with javascript/examples/grapheditor/www/js/Dialogs.js.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1181
  • Go to page 1182
  • Go to page 1183
  • Go to page 1184
  • Go to page 1185
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE