Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2019-03-05 CVE-2019-4028 Cross-site Scripting vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-03-05 CVE-2019-4027 Cross-site Scripting vulnerability in IBM Sterling B2B Integrator
IBM Sterling B2B Integrator 5.2.0.1 through 6.0.0.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2019-03-05 CVE-2019-6229 Cross-site Scripting vulnerability in Apple products
A logic issue was addressed with improved validation.
network
low complexity
apple CWE-79
6.1
2019-03-05 CVE-2019-6228 Cross-site Scripting vulnerability in Apple Iphone OS
A cross-site scripting issue existed in Safari.
network
low complexity
apple CWE-79
6.1
2019-03-05 CVE-2019-9570 Cross-site Scripting vulnerability in Yzmcms 5.2.0
An issue was discovered in YzmCMS 5.2.0.
network
low complexity
yzmcms CWE-79
4.8
2019-03-04 CVE-2017-15515 Cross-site Scripting vulnerability in Netapp Snapcenter Server
NetApp SnapCenter Server prior to 4.0 is susceptible to cross site scripting vulnerability that could allow a privileged user to inject arbitrary scripts into the custom secondary policy label field.
network
low complexity
netapp CWE-79
4.8
2019-03-04 CVE-2019-9567 Cross-site Scripting vulnerability in Incsub Forminator
The "Forminator Contact Form, Poll & Quiz Builder" plugin before 1.6 for WordPress has XSS via a custom input field of a poll.
network
low complexity
incsub CWE-79
6.1
2019-03-04 CVE-2019-9551 Cross-site Scripting vulnerability in Wdoyo Doyocms 2.3
An issue was discovered in DOYO (aka doyocms) 2.3 through 2015-05-06.
network
low complexity
wdoyo CWE-79
4.8
2019-03-03 CVE-2019-9550 Cross-site Scripting vulnerability in Dhcms Project Dhcms 20170918
DhCms through 2017-09-18 has admin.php?r=admin/Index/index XSS.
network
low complexity
dhcms-project CWE-79
4.8
2019-03-02 CVE-2019-8279 Cross-site Scripting vulnerability in Vanillaforums Vanilla Forums
Multiple stored XSS in Vanilla Forums before 2.5 allow remote attackers to inject arbitrary JavaScript code into any message on forum.
network
low complexity
vanillaforums CWE-79
5.4