Vulnerabilities > Improper Encoding or Escaping of Output

DATE CVE VULNERABILITY TITLE RISK
2019-12-17 CVE-2019-19714 Improper Encoding or Escaping of Output vulnerability in Contao 4.8.4/4.8.5
Contao 4.8.4 and 4.8.5 has Improper Encoding or Escaping of Output.
network
low complexity
contao CWE-116
5.3
2019-11-21 CVE-2019-11325 Improper Encoding or Escaping of Output vulnerability in Sensiolabs Symfony
An issue was discovered in Symfony before 4.2.12 and 4.3.x before 4.3.8.
network
low complexity
sensiolabs CWE-116
critical
9.8
2019-10-02 CVE-2019-12675 Improper Encoding or Escaping of Output vulnerability in Cisco products
Multiple vulnerabilities in the multi-instance feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to escape the container for their FTD instance and execute commands with root privileges in the host namespace.
local
low complexity
cisco CWE-116
8.8
2019-10-02 CVE-2019-12674 Improper Encoding or Escaping of Output vulnerability in Cisco products
Multiple vulnerabilities in the multi-instance feature of Cisco Firepower Threat Defense (FTD) Software could allow an authenticated, local attacker to escape the container for their FTD instance and execute commands with root privileges in the host namespace.
local
low complexity
cisco CWE-116
8.2
2019-09-27 CVE-2019-9853 Improper Encoding or Escaping of Output vulnerability in Libreoffice
LibreOffice documents can contain macros.
local
low complexity
libreoffice CWE-116
7.8
2019-09-11 CVE-2019-10074 Improper Encoding or Escaping of Output vulnerability in Apache Ofbiz
An RCE is possible by entering Freemarker markup in an Apache OFBiz Form Widget textarea field when encoding has been disabled on such a field.
network
low complexity
apache CWE-116
critical
9.8
2019-09-09 CVE-2019-11547 Improper Encoding or Escaping of Output vulnerability in Gitlab
An issue was discovered in GitLab Community and Enterprise Edition before 11.8.9, 11.9.x before 11.9.10, and 11.10.x before 11.10.2.
network
low complexity
gitlab CWE-116
6.1
2019-09-09 CVE-2019-12463 Improper Encoding or Escaping of Output vulnerability in Librenms 1.50.1/1.51/1.52
An issue was discovered in LibreNMS 1.50.1.
network
low complexity
librenms CWE-116
8.8
2019-09-05 CVE-2019-15944 Improper Encoding or Escaping of Output vulnerability in Valvesoftware Counter-Strike:Global Offensive
In Counter-Strike: Global Offensive before 8/29/2019, community game servers can display unsafe HTML in a disconnection message.
network
low complexity
valvesoftware CWE-116
5.3
2019-08-30 CVE-2019-1968 Improper Encoding or Escaping of Output vulnerability in Cisco Nx-Os
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an NX-API system process to unexpectedly restart.
network
low complexity
cisco CWE-116
7.5