Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2019-08-01 CVE-2019-14472 Cross-site Scripting vulnerability in Zurmo 3.2.72
Zurmo 3.2.7-2 has XSS via the app/index.php/zurmo/default PATH_INFO.
network
zurmo CWE-79
4.3
2019-08-01 CVE-2019-14471 Cross-site Scripting vulnerability in Testlink 1.9.19
TestLink 1.9.19 has XSS via the error.php message parameter.
network
testlink CWE-79
4.3
2019-08-01 CVE-2018-20923 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS via a WHM Synchronize DNS Records action (SEC-377).
network
cpanel CWE-79
4.3
2019-08-01 CVE-2018-20922 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS via a WHM DNS Cleanup action (SEC-376).
network
cpanel CWE-79
4.3
2019-08-01 CVE-2018-20921 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS via a WHM "Delete a DNS Zone" action (SEC-375).
network
cpanel CWE-79
4.3
2019-08-01 CVE-2018-20920 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS via a WHM Edit DNS Zone action (SEC-374).
network
cpanel CWE-79
4.3
2019-08-01 CVE-2018-20919 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS via a WHM Create Account action (SEC-373).
network
cpanel CWE-79
4.3
2019-08-01 CVE-2018-20918 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS in WHM DNS Cluster (SEC-372).
network
cpanel CWE-79
4.3
2019-08-01 CVE-2018-20916 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows Stored XSS via a WHM Edit MX Entry (SEC-370).
network
cpanel CWE-79
3.5
2019-08-01 CVE-2018-20915 Cross-site Scripting vulnerability in Cpanel
cPanel before 70.0.23 allows stored XSS via a WHM Edit DNS Zone action (SEC-369).
network
cpanel CWE-79
3.5