|
210101
|
5.4 |
MEDIUM
Network
|
spiceworks
|
spiceworks
|
Spiceworks Version <= 7.5.00107 is affected by XSS. Any name typed on Custom Groups function is vulnerable to stored XSS as they displayed on http://127.0.0.1/inventory/groups/ without output sanitiz…
|
CWE-79
Cross-site Scripting
|
CVE-2020-23450
|
2024-11-21 14:13 |
2020-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210102
|
5.4 |
MEDIUM
Network
|
laborator
|
neon
|
Laborator Neon dashboard v3 is affected by stored Cross Site Scripting (XSS) via the chat tab.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23576
|
2024-11-21 14:13 |
2020-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210103
|
5.4 |
MEDIUM
Network
|
webtareas_project
|
webtareas
|
webTareas v2.1 is affected by Cross Site Scripting (XSS) on "Search."
|
CWE-79
Cross-site Scripting
|
CVE-2020-23660
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210104
|
5.4 |
MEDIUM
Network
|
webport
|
web_port
|
WebPort-v1.19.17121 is affected by Cross Site Scripting (XSS) on the "connections" feature.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23659
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210105
|
5.4 |
MEDIUM
Network
|
php-fusion
|
php-fusion
|
PHP-Fusion 9.03.60 is affected by Cross Site Scripting (XSS) via infusions/member_poll_panel/poll_admin.php.
|
CWE-79
Cross-site Scripting
|
CVE-2020-23658
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210106
|
5.4 |
MEDIUM
Network
|
naviwebs
|
navigatecms
|
NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."
|
CWE-79
Cross-site Scripting
|
CVE-2020-23657
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210107
|
5.4 |
MEDIUM
Network
|
naviwebs
|
navigatecms
|
NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Content."
|
CWE-79
Cross-site Scripting
|
CVE-2020-23656
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210108
|
5.4 |
MEDIUM
Network
|
naviwebs
|
navigatecms
|
NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) on module "Configuration."
|
CWE-79
Cross-site Scripting
|
CVE-2020-23655
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210109
|
5.4 |
MEDIUM
Network
|
naviwebs
|
navigatecms
|
NavigateCMS 2.9 is affected by Cross Site Scripting (XSS) via the module "Shop."
|
CWE-79
Cross-site Scripting
|
CVE-2020-23654
|
2024-11-21 14:13 |
2020-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
210110
|
6.5 |
MEDIUM
Network
|
sysax
|
multi_server
|
When uploading a file in Sysax Multi Server 6.90, an authenticated user can modify the filename="" parameter in the uploadfile_name1.htm form to a length of 368 or more bytes. This will create a buff…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2020-23574
|
2024-11-21 14:13 |
2020-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|