|
197981
|
5.4 |
MEDIUM
Network
|
cmsmadesimple
|
cms_made_simple
|
A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Search Text" fie…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36412
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197982
|
5.4 |
MEDIUM
Network
|
cmsmadesimple
|
cms_made_simple
|
A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Path for the {pa…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36411
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197983
|
5.4 |
MEDIUM
Network
|
cmsmadesimple
|
cms_made_simple
|
A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Email address to…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36410
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197984
|
5.4 |
MEDIUM
Network
|
cmsmadesimple
|
cms_made_simple
|
A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Add Category" pa…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36409
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197985
|
5.4 |
MEDIUM
Network
|
cmsmadesimple
|
cms_made_simple
|
A stored cross scripting (XSS) vulnerability in CMS Made Simple 2.2.14 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload entered into the "Add Shortcut" pa…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36408
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197986
|
5.4 |
MEDIUM
Network
|
phplist
|
phplist
|
A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the "rule1" parameter under the "Bounce…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36399
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197987
|
5.4 |
MEDIUM
Network
|
phplist
|
phplist
|
A stored cross site scripting (XSS) vulnerability in phplist 3.5.4 and below allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the "Campaign" field under the "Send a …
|
CWE-79
Cross-site Scripting
|
CVE-2020-36398
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197988
|
5.4 |
MEDIUM
Network
|
lavalite
|
lavalite
|
A stored cross site scripting (XSS) vulnerability in the /admin/contact/contact component of LavaLite 5.8.0 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted paylo…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36397
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197989
|
5.4 |
MEDIUM
Network
|
lavalite
|
lavalite
|
A stored cross site scripting (XSS) vulnerability in the /admin/roles/role component of LavaLite 5.8.0 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload en…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36396
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
197990
|
5.4 |
MEDIUM
Network
|
lavalite
|
lavalite
|
A stored cross site scripting (XSS) vulnerability in the /admin/user/team component of LavaLite 5.8.0 allows authenticated attackers to execute arbitrary web scripts or HTML via a crafted payload ent…
|
CWE-79
Cross-site Scripting
|
CVE-2020-36395
|
2024-11-21 14:29 |
2021-07-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|