Total
21765 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2016-4790 | 1 Pulsesecure | 1 Pulse Connect Secure | 2020-04-29 | 3.5 LOW | 5.5 MEDIUM |
Cross-site scripting (XSS) vulnerability in the administrative user interface in Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r9, and 7.4 before 7.4r13.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |||||
CVE-2016-4789 | 1 Pulsesecure | 1 Pulse Connect Secure | 2020-04-29 | 4.3 MEDIUM | 6.1 MEDIUM |
Cross-site scripting (XSS) vulnerability in the system configuration section in the administrative user interface in Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r9, and 7.4 before 7.4r13.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. | |||||
CVE-2019-11543 | 1 Pulsesecure | 2 Pulse Connect Secure, Pulse Policy Secure | 2020-04-29 | 4.3 MEDIUM | 6.1 MEDIUM |
XSS exists in the admin web console in Pulse Secure Pulse Connect Secure (PCS) 9.0RX before 9.0R3.4, 8.3RX before 8.3R7.1, and 8.1RX before 8.1R15.1 and Pulse Policy Secure 9.0RX before 9.0R3.2, 5.4RX before 5.4R7.1, and 5.2RX before 5.2R12.1. | |||||
CVE-2020-10935 | 1 Zulip | 1 Zulip Server | 2020-04-28 | 3.5 LOW | 5.4 MEDIUM |
Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover. | |||||
CVE-2017-18811 | 1 Netgear | 1 Readynas Os | 2020-04-28 | 3.5 LOW | 4.8 MEDIUM |
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS. | |||||
CVE-2017-18813 | 1 Netgear | 1 Readynas Os | 2020-04-28 | 3.5 LOW | 4.8 MEDIUM |
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS. | |||||
CVE-2017-18812 | 1 Netgear | 1 Readynas Os | 2020-04-28 | 3.5 LOW | 4.8 MEDIUM |
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS. | |||||
CVE-2017-18809 | 1 Netgear | 1 Readynas Os | 2020-04-28 | 3.5 LOW | 4.8 MEDIUM |
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS. | |||||
CVE-2020-12129 | 1 App2pro | 1 Airdisk Pro | 2020-04-28 | 4.3 MEDIUM | 6.1 MEDIUM |
The AirDisk Pro app 5.5.3 for iOS allows XSS via the createFolder parameter of the Create Folder function. | |||||
CVE-2020-12131 | 1 App2pro | 1 Airdisk Pro | 2020-04-28 | 4.3 MEDIUM | 6.1 MEDIUM |
The AirDisk Pro app 5.5.3 for iOS allows XSS via the devicename parameter (shown next to the UI logo). | |||||
CVE-2020-12130 | 1 App2pro | 1 Airdisk Pro | 2020-04-28 | 4.3 MEDIUM | 6.1 MEDIUM |
The AirDisk Pro app 5.5.3 for iOS allows XSS via the deleteFile parameter of the Delete function. | |||||
CVE-2017-18700 | 1 Netgear | 46 D6400, D6400 Firmware, D7000 and 43 more | 2020-04-28 | 4.3 MEDIUM | 6.1 MEDIUM |
Certain NETGEAR devices are affected by stored XSS. This affects D6400 before 1.0.0.60, D7000 before 1.0.1.50, D8500 before 1.0.3.29, EX6200 before 1.0.3.84, EX7000 before 1.0.0.60, R6250 before 1.0.4.16, R6300v2 before 1.0.4.18, R6400 before 1.01.32, R6400v2 before 1.0.2.44, R6700 before 1.0.1.36, R6900 before 1.0.1.34, R6900P before 1.3.0.8, R7000 before 1.0.9.14, R7000P before 1.3.0.8, R7100LG before 1.0.0.34, R7300DST before 1.0.0.56, R7900 before 1.0.1.26, R8000 before 1.0.4.4, R8300 before 1.0.2.106, R8500 before 1.0.2.106, R9000 before 1.0.2.52, WNDR3400v3 before 1.0.1.16, WNR3500Lv2 before 1.2.0.46, and WNDR3700v5 before 1.1.0.48. | |||||
CVE-2017-18715 | 1 Netgear | 14 Ex3700, Ex3700 Firmware, Ex3800 and 11 more | 2020-04-28 | 4.3 MEDIUM | 6.1 MEDIUM |
Certain NETGEAR devices are affected by reflected XSS. This affects EX3700 before 1.0.0.66, EX3800 before 1.0.0.66, EX6100 before 1.0.2.20, EX6120 before 1.0.0.34, EX6150 before 1.0.0.36, EX6200 before 1.0.3.84, and EX7000 before 1.0.0.60. | |||||
CVE-2017-18701 | 1 Netgear | 4 R6700, R6700 Firmware, R6900 and 1 more | 2020-04-28 | 4.3 MEDIUM | 6.1 MEDIUM |
Certain NETGEAR devices are affected by reflected XSS. This affects R6700 before 1.0.1.36 and R6900 before 1.0.1.34. | |||||
CVE-2019-20789 | 1 Croogo | 1 Croogo | 2020-04-27 | 3.5 LOW | 4.8 MEDIUM |
Croogo before 3.0.7 allows XSS via the title to admin/menus/menus or admin/taxonomy/vocabularies. | |||||
CVE-2018-21095 | 1 Netgear | 4 Srr60, Srr60 Firmware, Srs60 and 1 more | 2020-04-27 | 2.3 LOW | 4.3 MEDIUM |
Certain NETGEAR devices are affected by stored XSS. This affects SRR60 before 2.2.1.210 and SRS60 before 2.2.1.210. | |||||
CVE-2020-9445 | 1 Zulip | 1 Zulip Server | 2020-04-27 | 4.3 MEDIUM | 6.1 MEDIUM |
Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality. | |||||
CVE-2020-12071 | 1 Anchorcms | 1 Anchor | 2020-04-27 | 3.5 LOW | 4.8 MEDIUM |
Anchor 0.12.7 allows admins to cause XSS via crafted post content. | |||||
CVE-2020-11416 | 1 Jetbrains | 1 Space | 2020-04-27 | 3.5 LOW | 5.4 MEDIUM |
JetBrains Space through 2020-04-22 allows stored XSS in Chats. | |||||
CVE-2017-18816 | 1 Netgear | 1 Readynas Os | 2020-04-24 | 3.5 LOW | 4.8 MEDIUM |
NETGEAR ReadyNAS OS 6 devices, running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS. |