• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2021-25273

February 23, 2023 by

Stored XSS can execute as administrator in quarantined email detail view in Sophos UTM before version 9.706.

CVE-2021-25277

February 23, 2023 by

FTAPI 4.0 – 4.10 allows XSS via a crafted filename to the alternative text hover box in the file submission component.

CVE-2021-25278

February 23, 2023 by

FTAPI 4.0 through 4.10 allows XSS via an SVG document to the Background Image upload feature in the Submit Box Template Editor.

CVE-2021-25295

February 23, 2023 by

OpenCATS through 0.9.5-3 has multiple Cross-site Scripting (XSS) issues.

CVE-2021-25299

February 23, 2023 by

Nagios XI version xi-5.7.5 is affected by cross-site scripting (XSS). The vulnerability exists in the file /usr/local/nagiosxi/html/admin/sshterm.php due to improper sanitization of user-controlled input. A maliciously crafted URL, when clicked by an admin user, can be used to steal his/her session cookies or it can be chained with the previous bugs to get one-click remote command execution (RCE) on the Nagios XI server.

CVE-2021-25313

February 23, 2023 by

A Improper Neutralization of Input During Web Page Generation (‘Cross-site Scripting’) vulnerability in Rancher allows remote attackers to execute JavaScript via malicious links. This issue affects: SUSE Rancher Rancher versions prior to 2.5.6.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 1539
  • Go to page 1540
  • Go to page 1541
  • Go to page 1542
  • Go to page 1543
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE