• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-11318

February 26, 2023 by

Zimbra Collaboration before 8.8.12 Patch 1 has persistent XSS.

CVE-2019-1134

February 26, 2023 by

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server, aka ‘Microsoft Office SharePoint XSS Vulnerability’.

CVE-2019-11274

February 26, 2023 by

Cloud Foundry UAA, versions prior to 74.0.0, is vulnerable to an XSS attack. A remote unauthenticated malicious attacker could craft a URL that contains a SCIM filter that contains malicious JavaScript, which older browsers may execute.

CVE-2019-11281

February 26, 2023 by

Pivotal RabbitMQ, versions prior to v3.7.18, and RabbitMQ for PCF, versions 1.15.x prior to 1.15.13, versions 1.16.x prior to 1.16.6, and versions 1.17.x prior to 1.17.3, contain two components, the virtual host limits page, and the federation management UI, which do not properly sanitize user input. A remote authenticated malicious user with administrative access could craft a cross site scripting attack that would gain access to virtual hosts and policy management information.

CVE-2019-11193

February 26, 2023 by

The FileManager in InfinitumIT DirectAdmin through v1.561 has XSS via CMD_FILE_MANAGER, CMD_SHOW_USER, and CMD_SHOW_RESELLER; an attacker can bypass the CSRF protection with this, and take over the administration panel.

CVE-2019-11198

February 26, 2023 by

Multiple cross-site scripting (XSS) vulnerabilities in Sitecore CMS 9.0.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) #300583 – List Manager Dashboard module, (2) #307638 – Campaign Creator module, (3) #316994 – Attributes field, (4) I#316995 – Icon Selection module, (5) #317000 – Latitude field, (6) #317000 – Longitude field, (7) #317017 – UploadPackage2.aspx module, (8) #317072 – Context menu, or (9) I#317073 – Insert from Template dialog.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1214
  • Go to page 1215
  • Go to page 1216
  • Go to page 1217
  • Go to page 1218
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE