Vulnerabilities (CVE)

Filtered by CWE-79
Total 41633 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-18489 1 Mediaburst 1 Contact Form 7 - Clockwork Sms 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The contact-form-7-sms-addon plugin before 2.4.0 for WordPress has XSS.
CVE-2017-18488 1 Backup-guard 1 Backup Guard 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The Backup Guard plugin before 1.1.47 for WordPress has multiple XSS issues.
CVE-2017-18487 1 Google Adsense Project 1 Google Adsense 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
The adsense-plugin (aka Google AdSense) plugin before 1.44 for WordPress has multiple XSS issues.
CVE-2017-18484 1 Elementalpath 2 Cognitoys Dino, Cognitoys Dino Firmware 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Cognitoys Dino devices allow XSS via the SSID.
CVE-2017-18483 1 Annke 2 Sp1, Sp1 Firmware 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
ANNKE SP1 HD wireless camera 3.4.1.1604071109 devices allow XSS via a crafted SSID.
CVE-2017-18481 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 62.0.4 allows stored XSS in the WHM Account Suspension List interface (SEC-211).
CVE-2017-18473 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 62.0.4 allows self XSS on the webmail Password and Security page (SEC-199).
CVE-2017-18472 1 Cpanel 1 Cpanel 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
cPanel before 62.0.4 allows reflected XSS in reset-password interfaces (SEC-198).
CVE-2017-18471 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 62.0.4 allows self XSS on the paper_lantern password-change screen (SEC-197).
CVE-2017-18456 1 Cpanel 1 Cpanel 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
cPanel before 62.0.17 allows self XSS in the WHM cPAddons showsecurity interface (SEC-217).
CVE-2017-18454 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 62.0.24 allows stored XSS in the WHM cPAddons install interface (SEC-262).
CVE-2017-18420 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 66.0.2 allows stored XSS during WHM cPAddons processing (SEC-269).
CVE-2017-18419 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 66.0.2 allows stored XSS during WHM cPAddons uninstallation (SEC-266).
CVE-2017-18418 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 66.0.2 allows stored XSS during WHM cPAddons file operations (SEC-265).
CVE-2017-18417 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 66.0.2 allows stored XSS during WHM cPAddons installation (SEC-263).
CVE-2017-18408 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 67.9999.103 allows stored XSS in WHM MySQL Password Change interfaces (SEC-282).
CVE-2017-18402 1 Cpanel 1 Cpanel 2024-11-21 3.5 LOW 5.4 MEDIUM
cPanel before 68.0.15 allows stored XSS during a cpaddons moderated upgrade (SEC-336).
CVE-2017-18364 1 Frank-karau 1 Phpfk 2024-11-21 4.3 MEDIUM 7.4 HIGH
phpFK lite has XSS via the faq.php, members.php, or search.php query string or the user.php user parameter.
CVE-2017-18358 1 Limesurvey 1 Limesurvey 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
LimeSurvey before 2.72.4 has Stored XSS by using the Continue Later (aka Resume later) feature to enter an email address, which is mishandled in the admin panel.
CVE-2017-18352 1 Google 1 Rendertron 2024-11-21 4.3 MEDIUM 6.1 MEDIUM
Error reporting within Rendertron 1.0.0 allows reflected Cross Site Scripting (XSS) from invalid URLs.