Search Results (46294 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2021-4172 1 Showdoc 1 Showdoc 2024-11-21 5.4 Medium
Cross-site Scripting (XSS) - Stored in GitHub repository star7th/showdoc prior to 2.10.2.
CVE-2021-4170 1 Janeczku 1 Calibre-web 2024-11-21 5.4 Medium
calibre-web is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4169 1 Livehelperchat 1 Live Helper Chat 2024-11-21 6.1 Medium
livehelperchat is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4143 1 Bigbluebutton 1 Bigbluebutton 2024-11-21 6.1 Medium
Cross-site Scripting (XSS) - Generic in GitHub repository bigbluebutton/bigbluebutton prior to 2.4.0.
CVE-2021-4139 1 Pimcore 1 Pimcore 2024-11-21 9.0 Critical
pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4132 1 Livehelperchat 1 Live Helper Chat 2024-11-21 5.4 Medium
livehelperchat is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4124 1 Meetecho 1 Janus 2024-11-21 6.1 Medium
janus-gateway is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4121 1 Yetiforce 1 Yetiforce Customer Relationship Management 2024-11-21 6.1 Medium
yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4116 1 Yetiforce 1 Yetiforce Customer Relationship Management 2024-11-21 5.4 Medium
yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4108 1 Snipeitapp 1 Snipe-it 2024-11-21 6.1 Medium
snipe-it is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4107 1 Yetiforce 1 Yetiforce Customer Relationship Management 2024-11-21 6.1 Medium
yetiforcecrm is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4103 1 B3log 1 Vditor 2024-11-21 5.4 Medium
Cross-site Scripting (XSS) - Stored in GitHub repository vanessa219/vditor prior to 1.0.34.
CVE-2021-4084 1 Pimcore 1 Pimcore 2024-11-21 6.1 Medium
pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4081 1 Pimcore 1 Pimcore 2024-11-21 6.1 Medium
pimcore is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4072 1 Elgg 1 Elgg 2024-11-21 5.4 Medium
elgg is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4050 1 Livehelperchat 1 Live Helper Chat 2024-11-21 6.1 Medium
livehelperchat is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2021-4046 1 Tcman 1 Gim 2024-11-21 5.4 Medium
The m_txtNom y m_txtCognoms parameters in TCMAN GIM v8.01 allow an attacker to perform persistent XSS attacks. This vulnerability could be used to carry out a number of browser-based attacks including browser hijacking or theft of sensitive data.
CVE-2021-4038 1 Mcafee 1 Network Security Manager 2024-11-21 4.8 Medium
Cross Site Scripting (XSS) vulnerability in McAfee Network Security Manager (NSM) prior to 10.1 Minor 7 allows a remote authenticated administrator to embed a XSS in the administrator interface via specially crafted custom rules containing HTML. NSM did not correctly sanitize custom rule content in all scenarios.
CVE-2021-4035 1 Wocu-monitoring 1 Wocu Monitoring 2024-11-21 3.5 Low
A stored cross site scripting have been identified at the comments in the report creation due to an obsolote version of tinymce editor. In order to exploit this vulnerability, the attackers needs an account with enough privileges to view and edit reports.
CVE-2021-4020 1 Meetecho 1 Janus 2024-11-21 5.4 Medium
janus-gateway is vulnerable to Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')