• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2020-21987

February 26, 2023 by

HomeAutomation 3.3.2 is affected by persistent Cross Site Scripting (XSS). XSS vulnerabilities occur when input passed via several parameters to several scripts is not properly sanitized before being returned to the user. This can be exploited to execute arbitrary HTML and script code in a user’s browser session.

CVE-2020-2199

February 26, 2023 by

Jenkins Subversion Partial Release Manager Plugin 1.0.1 and earlier does not escape the error message for the repository URL field form validation, resulting in a reflected cross-site scripting vulnerability.

CVE-2020-21993

February 26, 2023 by

In WEMS Limited Enterprise Manager 2.58, input passed to the GET parameter ’email’ is not properly sanitized before being returned to the user. This can be exploited to execute arbitrary HTML code in a user’s browser session in context of an affected site.

CVE-2020-2201

February 26, 2023 by

Jenkins Sonargraph Integration Plugin 3.0.0 and earlier does not escape the file path for the Log file field form validation, resulting in a stored cross-site scripting vulnerability.

CVE-2020-21845

February 26, 2023 by

Codoforum 4.8.3 allows HTML Injection in the ‘admin dashboard Manage users Section.’

CVE-2020-21854

February 26, 2023 by

Cross Site Scripting vulnerabiity exists in WDScanner 1.1 in the system management page.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 799
  • Go to page 800
  • Go to page 801
  • Go to page 802
  • Go to page 803
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE