• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2020-10098

February 26, 2023 by

An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the Email functionality. The malicious JavaScript will execute within the browser of any user who opens the Ticket with the Article created from that Email.

CVE-2020-10099

February 26, 2023 by

An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the Ticket functionality in Zammad. The malicious JavaScript will execute within the browser of any user who opens the ticket or has the ticket within the Toolbar.

CVE-2020-10103

February 26, 2023 by

An XSS issue was discovered in Zammad 3.0 through 3.2. Malicious code can be provided by a low-privileged user through the File Upload functionality in Zammad. The malicious JavaScript will execute within the browser of any user who opens a specially crafted link to the uploaded file with an active Zammad session.

CVE-2020-10107

February 26, 2023 by

PHPGurukul Daily Expense Tracker System 1.0 is vulnerable to stored XSS, as demonstrated by the ExpenseItem or ExpenseCost parameter in manage-expense.php.

CVE-2020-10113

February 26, 2023 by

cPanel before 84.0.20 allows self XSS via a temporary character-set specification (SEC-515).

CVE-2020-10114

February 26, 2023 by

cPanel before 84.0.20 allows stored self-XSS via the HTML file editor (SEC-535).

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 946
  • Go to page 947
  • Go to page 948
  • Go to page 949
  • Go to page 950
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE