Latest CVE Feed
-
5.4
MEDIUMCVE-2020-4223
IBM Maximo Asset Management 7.6.0.10 and 7.6.1.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure... Read more
- EPSS Score: %0.18
- Published: Jun. 26, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-4557
IBM Business Automation Workflow 18.0, 19.0, and 20.0 and IBM Business Process Manager 8.5 and 8.6 are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended function... Read more
- EPSS Score: %0.24
- Published: Jun. 29, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-15514
The jh_captcha extension through 2.1.3, and 3.x through 3.0.2, for TYPO3 allows XSS.... Read more
Affected Products : jh_captcha- EPSS Score: %0.21
- Published: Jul. 07, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-15517
The ke_search (aka Faceted Search) extension through 2.8.2, and 3.x through 3.1.3, for TYPO3 allows XSS.... Read more
- EPSS Score: %0.21
- Published: Jul. 07, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-9584
Magento versions 2.3.4 and earlier, 2.2.11 and earlier (see note), 1.14.4.4 and earlier, and 1.9.4.4 and earlier have a stored cross-site scripting vulnerability. Successful exploitation could lead to sensitive information disclosure.... Read more
Affected Products : magento- EPSS Score: %0.23
- Published: Jun. 26, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-15028
NeDi 1.9C is vulnerable to a cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Topology-Map.php xo parameter.... Read more
Affected Products : nedi- EPSS Score: %0.34
- Published: Jul. 07, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-15031
NeDi 1.9C is vulnerable to cross-site scripting (XSS) attack. The application allows an attacker to execute arbitrary JavaScript code via the Assets-Management.php chg parameter.... Read more
Affected Products : nedi- EPSS Score: %0.34
- Published: Jul. 07, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-7576
A vulnerability has been identified in Camstar Enterprise Platform (All versions), Opcenter Execution Core (All versions < V8.2), Opcenter Execution Core (V8.2). An authenticated user with the ability to create containers, packages or register defects cou... Read more
Affected Products : opcenter_execution_core- EPSS Score: %0.47
- Published: Jul. 14, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-15885
A Cross-Site Scripting (XSS) vulnerability in the comment module before 4.0 for MunkiReport allows remote attackers to inject arbitrary web script or HTML by posting a new comment.... Read more
- EPSS Score: %0.27
- Published: Jul. 23, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-15869
Sonatype Nexus Repository Manager OSS/Pro versions before 3.25.1 allow XSS (issue 1 of 2).... Read more
- EPSS Score: %0.31
- Published: Jul. 31, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-4396
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosur... Read more
- EPSS Score: %0.18
- Published: Aug. 04, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-4525
IBM Jazz Foundation and IBM Engineering products are vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosur... Read more
- EPSS Score: %0.24
- Published: Aug. 04, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-5620
Cross-site scripting vulnerability in Exment prior to v3.6.0 allows remote authenticated attackers to inject arbitrary script or HTML via a specially crafted file.... Read more
Affected Products : exment- EPSS Score: %0.20
- Published: Aug. 25, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-13821
An issue was discovered in HiveMQ Broker Control Center 4.3.2. A crafted clientid parameter in an MQTT packet (sent to the Broker) is reflected in the client section of the management console. The attacker's JavaScript is loaded in a browser, which can le... Read more
Affected Products : broker_control_center- EPSS Score: %0.34
- Published: Aug. 26, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-23655
NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."... Read more
Affected Products : navigatecms- EPSS Score: %0.21
- Published: Aug. 26, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-23657
NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."... Read more
Affected Products : navigatecms- EPSS Score: %0.21
- Published: Aug. 26, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-23660
webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search."... Read more
Affected Products : webtareas- EPSS Score: %0.21
- Published: Aug. 26, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-23983
Michael-design iChat Realtime PHP Live Support System 1.6 has persistent Cross-site Scripting via chat,text-filed tags.... Read more
Affected Products : ichat- EPSS Score: %0.18
- Published: Aug. 27, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-2238
Jenkins Git Parameter Plugin 0.9.12 and earlier does not escape the repository field on the 'Build with Parameters' page, resulting in a stored cross-site scripting (XSS) vulnerability exploitable by attackers with Job/Configure permission.... Read more
Affected Products : git_parameter- EPSS Score: %0.23
- Published: Sep. 01, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2020-23450
Spiceworks Version <= 7.5.00107 is affected by XSS. Any name typed on Custom Groups function is vulnerable to stored XSS as they displayed on http://127.0.0.1/inventory/groups/ without output sanitization.... Read more
Affected Products : spiceworks- EPSS Score: %0.43
- Published: Sep. 01, 2020
- Modified: Nov. 21, 2024