• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2020-35272

February 26, 2023 by

Employee Performance Evaluation System in PHP/MySQLi with Source Code 1.0 is affected by cross-site scripting (XSS) in the Admin Portal in the Task and Description fields.

CVE-2020-35199

February 26, 2023 by

Ignite Realtime Openfire 4.6.0 has create-bookmark.jsp groupchatJID Stored XSS.

CVE-2020-35200

February 26, 2023 by

Ignite Realtime Openfire 4.6.0 has plugins/clientcontrol/spark-form.jsp Reflective XSS.

CVE-2020-35201

February 26, 2023 by

Ignite Realtime Openfire 4.6.0 has create-bookmark.jsp users Stored XSS.

CVE-2020-35202

February 26, 2023 by

Ignite Realtime Openfire 4.6.0 has plugins/dbaccess/db-access.jsp sql Stored XSS.

CVE-2020-35203

February 26, 2023 by

** UNSUPPORTED WHEN ASSIGNED ** Reflected XSS in Web Compliance Manager in Quest Policy Authority version 8.1.2.200 allows attackers to inject malicious code into the browser via a specially crafted link to the initFile.jsp file via the msg parameter. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 698
  • Go to page 699
  • Go to page 700
  • Go to page 701
  • Go to page 702
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE