Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by CWE-79
Total 21765 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2016-4790 1 Pulsesecure 1 Pulse Connect Secure 2020-04-29 3.5 LOW 5.5 MEDIUM
Cross-site scripting (XSS) vulnerability in the administrative user interface in Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r9, and 7.4 before 7.4r13.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2016-4789 1 Pulsesecure 1 Pulse Connect Secure 2020-04-29 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in the system configuration section in the administrative user interface in Pulse Connect Secure (PCS) 8.2 before 8.2r1, 8.1 before 8.1r2, 8.0 before 8.0r9, and 7.4 before 7.4r13.4 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2019-11543 1 Pulsesecure 2 Pulse Connect Secure, Pulse Policy Secure 2020-04-29 4.3 MEDIUM 6.1 MEDIUM
XSS exists in the admin web console in Pulse Secure Pulse Connect Secure (PCS) 9.0RX before 9.0R3.4, 8.3RX before 8.3R7.1, and 8.1RX before 8.1R15.1 and Pulse Policy Secure 9.0RX before 9.0R3.2, 5.4RX before 5.4R7.1, and 5.2RX before 5.2R12.1.
CVE-2020-10935 1 Zulip 1 Zulip Server 2020-04-28 3.5 LOW 5.4 MEDIUM
Zulip Server before 2.1.3 allows XSS via a Markdown link, with resultant account takeover.
CVE-2017-18811 1 Netgear 1 Readynas Os 2020-04-28 3.5 LOW 4.8 MEDIUM
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.
CVE-2017-18813 1 Netgear 1 Readynas Os 2020-04-28 3.5 LOW 4.8 MEDIUM
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.
CVE-2017-18812 1 Netgear 1 Readynas Os 2020-04-28 3.5 LOW 4.8 MEDIUM
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.
CVE-2017-18809 1 Netgear 1 Readynas Os 2020-04-28 3.5 LOW 4.8 MEDIUM
NETGEAR ReadyNAS OS 6 devices running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.
CVE-2020-12129 1 App2pro 1 Airdisk Pro 2020-04-28 4.3 MEDIUM 6.1 MEDIUM
The AirDisk Pro app 5.5.3 for iOS allows XSS via the createFolder parameter of the Create Folder function.
CVE-2020-12131 1 App2pro 1 Airdisk Pro 2020-04-28 4.3 MEDIUM 6.1 MEDIUM
The AirDisk Pro app 5.5.3 for iOS allows XSS via the devicename parameter (shown next to the UI logo).
CVE-2020-12130 1 App2pro 1 Airdisk Pro 2020-04-28 4.3 MEDIUM 6.1 MEDIUM
The AirDisk Pro app 5.5.3 for iOS allows XSS via the deleteFile parameter of the Delete function.
CVE-2017-18700 1 Netgear 46 D6400, D6400 Firmware, D7000 and 43 more 2020-04-28 4.3 MEDIUM 6.1 MEDIUM
Certain NETGEAR devices are affected by stored XSS. This affects D6400 before 1.0.0.60, D7000 before 1.0.1.50, D8500 before 1.0.3.29, EX6200 before 1.0.3.84, EX7000 before 1.0.0.60, R6250 before 1.0.4.16, R6300v2 before 1.0.4.18, R6400 before 1.01.32, R6400v2 before 1.0.2.44, R6700 before 1.0.1.36, R6900 before 1.0.1.34, R6900P before 1.3.0.8, R7000 before 1.0.9.14, R7000P before 1.3.0.8, R7100LG before 1.0.0.34, R7300DST before 1.0.0.56, R7900 before 1.0.1.26, R8000 before 1.0.4.4, R8300 before 1.0.2.106, R8500 before 1.0.2.106, R9000 before 1.0.2.52, WNDR3400v3 before 1.0.1.16, WNR3500Lv2 before 1.2.0.46, and WNDR3700v5 before 1.1.0.48.
CVE-2017-18715 1 Netgear 14 Ex3700, Ex3700 Firmware, Ex3800 and 11 more 2020-04-28 4.3 MEDIUM 6.1 MEDIUM
Certain NETGEAR devices are affected by reflected XSS. This affects EX3700 before 1.0.0.66, EX3800 before 1.0.0.66, EX6100 before 1.0.2.20, EX6120 before 1.0.0.34, EX6150 before 1.0.0.36, EX6200 before 1.0.3.84, and EX7000 before 1.0.0.60.
CVE-2017-18701 1 Netgear 4 R6700, R6700 Firmware, R6900 and 1 more 2020-04-28 4.3 MEDIUM 6.1 MEDIUM
Certain NETGEAR devices are affected by reflected XSS. This affects R6700 before 1.0.1.36 and R6900 before 1.0.1.34.
CVE-2019-20789 1 Croogo 1 Croogo 2020-04-27 3.5 LOW 4.8 MEDIUM
Croogo before 3.0.7 allows XSS via the title to admin/menus/menus or admin/taxonomy/vocabularies.
CVE-2018-21095 1 Netgear 4 Srr60, Srr60 Firmware, Srs60 and 1 more 2020-04-27 2.3 LOW 4.3 MEDIUM
Certain NETGEAR devices are affected by stored XSS. This affects SRR60 before 2.2.1.210 and SRS60 before 2.2.1.210.
CVE-2020-9445 1 Zulip 1 Zulip Server 2020-04-27 4.3 MEDIUM 6.1 MEDIUM
Zulip Server before 2.1.3 allows XSS via the modal_link feature in the Markdown functionality.
CVE-2020-12071 1 Anchorcms 1 Anchor 2020-04-27 3.5 LOW 4.8 MEDIUM
Anchor 0.12.7 allows admins to cause XSS via crafted post content.
CVE-2020-11416 1 Jetbrains 1 Space 2020-04-27 3.5 LOW 5.4 MEDIUM
JetBrains Space through 2020-04-22 allows stored XSS in Chats.
CVE-2017-18816 1 Netgear 1 Readynas Os 2020-04-24 3.5 LOW 4.8 MEDIUM
NETGEAR ReadyNAS OS 6 devices, running ReadyNAS OS versions prior to 6.8.0 are affected by stored XSS.