• Skip to primary navigation
  • Skip to main content
CVE Vulnerability

CVE Vulnerability

  • CVE’s
  • Products
  • Vendors

CWE-79

CVE-2019-7421

February 26, 2023 by

XSS exists in SAMSUNG X7400GX SyncThru Web Service V6.A6.25 V11.01.05.25_08-21-2015 in “/sws.login/gnb/loginView.sws” in multiple parameters: contextpath and basedURL.

CVE-2019-7422

February 26, 2023 by

XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone “/netflow/jspui/addMailSettings.jsp” file in the gF parameter.

CVE-2019-7423

February 26, 2023 by

XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone “/netflow/jspui/editProfile.jsp” file in the userName parameter.

CVE-2019-7424

February 26, 2023 by

XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone “/netflow/jspui/index.jsp” file in the view GET parameter or any of these POST parameters: autorefTime, section, snapshot, viewOpt, viewAll, view, or groupSelName. The latter is related to CVE-2009-3903.

CVE-2019-7332

February 26, 2023 by

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable ‘eid’ (aka Event ID) parameter value in the view download (download.php) because proper filtration is omitted.

CVE-2019-7333

February 26, 2023 by

Reflected Cross Site Scripting (XSS) exists in ZoneMinder through 1.32.3, allowing an attacker to execute HTML or JavaScript code via a vulnerable ‘Exportfile’ parameter value in the view download (download.php) because proper filtration is omitted.

  • « Go to Previous Page
  • Go to page 1
  • Interim pages omitted …
  • Go to page 993
  • Go to page 994
  • Go to page 995
  • Go to page 996
  • Go to page 997
  • Interim pages omitted …
  • Go to page 2216
  • Go to Next Page »

Copyright CVE Vulnerabilities 2023
Data Sources:

  • NIST
  • MITRE
  • CVE Search
  • Open CVE