VulnSea

CWE-79

CVEs classified under CWE-79, newest first.

2144 CVEsRSS

CVE-2020-24917Medium· 6.1
6y ago

osTicket before 1.14.3 allows XSS via a crafted filename to DraftAjaxAPI::_uploadInlineImage() in include/ajax.draft.php.

osTicket before 1.14.3 allows XSS via a crafted filename to DraftAjaxAPI::_uploadInlineImage() in include/ajax.draft.php.

▾ Sunlitenhancesoft · osticketEPSS 1.2%via NVD
CVE-2020-16193Medium· 5.4
6y ago

osTicket before 1.14.3 allows XSS because include/staff/banrule.inc.php has an unvalidated echo $info['notes'] call.

osTicket before 1.14.3 allows XSS because include/staff/banrule.inc.php has an unvalidated echo $info['notes'] call.

▾ Sunlitenhancesoft · osticketEPSS 0.59%via NVD
CVE-2020-15870Medium· 6.1
6y ago

Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (Issue 2 of 2).

Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (Issue 2 of 2).

▾ Sunlitsonatype · nexus_repository_managerEPSS 0.68%via NVD
CVE-2020-15869Medium· 5.4
6y ago

Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (issue 1 of 2).

Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (issue 1 of 2).

▾ Sunlitsonatype · nexus_repository_managerEPSS 0.68%via NVD
CVE-2020-12404Medium· 4.3
6y ago

For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions

For native-to-JS bridging the app requires a unique token to be passed that ensures non-app code can't call the bridging functions. That token could leak when used for downloading files. This vulnerability affects Firefox for iOS < 26.

▾ Sunlitmozilla · firefox_mobileEPSS 0.78%via NVD
CVE-2020-1107Medium· 5.4
6y ago

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a speciall…

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.5%via NVD
CVE-2020-1106Medium· 6.1
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 4.0%via NVD
CVE-2020-1105Medium· 5.4
6y ago

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a speciall…

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1104Medium· 5.4
6y ago

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A spoofing vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by sending a speciall…

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1101Medium· 5.4
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1100Medium· 5.4
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1099Medium· 5.4
6y ago

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server

A cross-site-scripting (XSS) vulnerability exists when Microsoft SharePoint Server does not properly sanitize a specially crafted web request to an affected SharePoint server. An authenticated attacker could exploit the vulnerability by …

▾ Sunlitmicrosoft · sharepoint_enterprise_serverEPSS 1.7%via NVD
CVE-2020-1063Medium· 5.4
6y ago

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server

A cross site scripting vulnerability exists when Microsoft Dynamics 365 (on-premises) does not properly sanitize a specially crafted web request to an affected Dynamics server. An authenticated attacker could exploit the vulnerability by…

▾ Sunlitmicrosoft · dynamics_365EPSS 1.5%via NVD
CVE-2020-1055Medium· 5.5
6y ago

A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs

A cross-site-scripting (XSS) vulnerability exists when Active Directory Federation Services (ADFS) does not properly sanitize user inputs. An un-authenticated attacker could exploit the vulnerability by sending a specially crafted reques…

▾ Sunlitmicrosoft · windows_10EPSS 2.4%via NVD
CVE-2020-13153Medium· 6.1
6y ago

app/View/Events/resolved_attributes.ctp in MISP before 2.4.126 has XSS in the resolved attributes view.

app/View/Events/resolved_attributes.ctp in MISP before 2.4.126 has XSS in the resolved attributes view.

▾ Sunlitmisp-project · mispEPSS 0.84%via NVD
CVE-2020-10247Medium· 6.1
6y ago

MISP 2.4.122 has Persistent XSS in the sighting popover tool

MISP 2.4.122 has Persistent XSS in the sighting popover tool. This is related to app/View/Elements/Events/View/sighting_field.ctp.

▾ Sunlitmisp-project · mispEPSS 0.86%via NVD
CVE-2020-10246Medium· 6.1
6y ago

MISP 2.4.122 has reflected XSS via unsanitized URL parameters

MISP 2.4.122 has reflected XSS via unsanitized URL parameters. This is related to app/View/Users/statistics_orgs.ctp.

▾ Sunlitmisp-project · mispEPSS 0.86%via NVD
CVE-2020-9281Medium· 6.1
6y ago

A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEditor 4.0 before 4.14 allows remote attackers to inject arbitrary web script through a crafted "protected" comment (with the cke_protected syntax).

A cross-site scripting (XSS) vulnerability in the HTML Data Processor for CKEditor 4.0 before 4.14 allows remote attackers to inject arbitrary web script through a crafted "protected" comment (with the cke_protected syntax).

▾ Sunlitckeditor · ckeditorEPSS 4.3%via NVD
CVE-2012-1637Medium· 4.8
6y ago

Cross-site scripting vulnerability (XSS) in the Quick Tabs module 6.x-2.x before 6.x-2.1, 6.x-3.x before 6.x-3.1, and 7.x-3.x before 7.x-3.3 for Drupal.

Cross-site scripting vulnerability (XSS) in the Quick Tabs module 6.x-2.x before 6.x-2.1, 6.x-3.x before 6.x-3.1, and 7.x-3.x before 7.x-3.3 for Drupal.

▾ Sunlitquick_tabs_project · quick_tabsEPSS 0.53%via NVD
CVE-2019-10219Medium· 6.1PoC
6y ago

A vulnerability was found in Hibernate-Validator

A vulnerability was found in Hibernate-Validator. The SafeHtml validator annotation fails to properly sanitize payloads consisting of potentially malicious code in HTML comments and instructions. This vulnerability can result in an XSS a…

▾ Twilightredhat · hibernate_validatorEPSS 2.2%via NVD
CVE-2019-12695Medium· 6.1
6y ago

A vulnerability in the Clientless SSL VPN (WebVPN) portal of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS…

A vulnerability in the Clientless SSL VPN (WebVPN) portal of Cisco Adaptive Security Appliance (ASA) and Cisco Firepower Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS…

▾ Sunlitcisco · adaptive_security_applianceEPSS 1.1%via NVD
CVE-2019-1973Medium· 4.8
7y ago

A vulnerability in the web portal framework of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface

A vulnerability in the web portal framework of Cisco Enterprise NFV Infrastructure Software (NFVIS) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. T…

▾ Sunlitcisco · enterprise_nfv_infrastructure_softwareEPSS 0.80%via NVD
CVE-2019-14750Medium· 6.1PoC
7y ago

An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1

An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. Stored XSS exists in setup/install.php. It was observed that no input sanitization was provided in the firstname and lastname fields of the application. The inse…

▾ Twilightenhancesoft · osticketEPSS 11%via NVD
CVE-2019-14748Medium· 5.4PoC
7y ago

An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1

An issue was discovered in osTicket before 1.10.7 and 1.12.x before 1.12.1. The Ticket creation form allows users to upload files along with queries. It was found that the file-upload functionality has fewer (or no) mitigations implement…

▾ Twilightenhancesoft · osticketEPSS 2.7%via NVD
CVE-2019-14286Medium· 6.1
7y ago

In app/webroot/js/event-graph.js in MISP 2.4.111, a stored XSS vulnerability exists in the event-graph view when a user toggles the event graph view

In app/webroot/js/event-graph.js in MISP 2.4.111, a stored XSS vulnerability exists in the event-graph view when a user toggles the event graph view. A malicious MISP event must be crafted in order to trigger the vulnerability.

▾ Sunlitmisp-project · mispEPSS 0.81%via NVD
CVE-2019-11814Medium· 6.1
7y ago

An issue was discovered in app/webroot/js/misp.js in MISP before 2.4.107

An issue was discovered in app/webroot/js/misp.js in MISP before 2.4.107. There is persistent XSS via image names in titles, as demonstrated by a screenshot.

▾ Sunlitmisp-project · mispEPSS 0.81%via NVD
CVE-2019-11813Medium· 6.1
7y ago

An issue was discovered in app/View/Elements/Events/View/value_field.ctp in MISP before 2.4.107

An issue was discovered in app/View/Elements/Events/View/value_field.ctp in MISP before 2.4.107. There is persistent XSS via link type attributes with javascript:// links.

▾ Sunlitmisp-project · mispEPSS 0.81%via NVD
CVE-2019-11812Medium· 6.1
7y ago

A persistent XSS issue was discovered in app/View/Helper/CommandHelper.php in MISP before 2.4.107

A persistent XSS issue was discovered in app/View/Helper/CommandHelper.php in MISP before 2.4.107. JavaScript can be included in the discussion interface, and can be triggered by clicking on the link.

▾ Sunlitmisp-project · mispEPSS 0.81%via NVD
CVE-2019-1701Medium· 4.8
7y ago

Multiple vulnerabilities in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) at…

Multiple vulnerabilities in the WebVPN service of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) at…

▾ Sunlitcisco · adaptive_security_appliance_softwareEPSS 0.86%via NVD
CVE-2019-11537Medium· 6.1PoC
7y ago

In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can a…

In osTicket before 1.12, XSS exists via /upload/file.php, /upload/scp/users.php?do=import-users, and /upload/scp/ajax.php/users/import if an agent manager user uploads a crafted .csv file to the User Importer, because file contents can a…

▾ Twilightenhancesoft · osticketEPSS 4.6%via NVD
CWE-79 vulnerabilities (CVEs) — page 71 · VulnSea