• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2021-36214

February 23, 2023 by

LINE client for iOS before 10.16.3 allows cross site script with specific header in WebView.

CVE-2021-3628

February 23, 2023 by

OpenKM Community Edition in its 6.3.10 version is vulnerable to authenticated Cross-site scripting (XSS). A remote attacker could exploit this vulnerability by injecting arbitrary code via de uuid parameter.

CVE-2021-36150

February 23, 2023 by

SilverStripe Framework through 4.8.1 allows XSS.

CVE-2021-36175

February 23, 2023 by

An improper neutralization of input vulnerability [CWE-79] in FortiWebManager versions 6.2.3 and below, 6.0.2 and below may allow a remote authenticated attacker to inject malicious script/tags via the name/description/comments parameter of various sections of the device.

CVE-2021-36176

February 23, 2023 by

Multiple uncontrolled resource consumption vulnerabilities in the web interface of FortiPortal before 6.0.6 may allow a single low-privileged user to induce a denial of service via multiple HTTP requests.

CVE-2021-36188

February 23, 2023 by

A improper neutralization of input during web page generation (‘cross-site scripting’) in Fortinet FortiWeb version 6.4.1 and below, 6.3.15 and below allows attacker to execute unauthorized code or commands via crafted GET parameters in requests to login and error handlers

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1413
  • Go to page 1414
  • Go to page 1415
  • Go to page 1416
  • Go to page 1417
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE