Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2018-07-03 CVE-2017-1281 Cross-site Scripting vulnerability in IBM products
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-07-03 CVE-2017-1280 Cross-site Scripting vulnerability in IBM products
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-07-03 CVE-2017-1277 Cross-site Scripting vulnerability in IBM products
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-07-03 CVE-2017-1275 Cross-site Scripting vulnerability in IBM products
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-07-03 CVE-2017-1250 Cross-site Scripting vulnerability in IBM products
IBM Rational Quality Manager and IBM Rational Collaborative Lifecycle Management 5.0 through 5.0.2 and 6.0 through 6.0.5 are vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2018-07-03 CVE-2018-13106 Cross-site Scripting vulnerability in Clippercms 1.3.3
ClipperCMS 1.3.3 has stored XSS via the "Tools -> Configuration" screen of the manager/ URI.
network
clippercms CWE-79
3.5
2018-07-03 CVE-2018-7786 Cross-site Scripting vulnerability in Schneider-Electric U.Motion Builder 1.2.1
In Schneider Electric U.motion Builder software versions prior to v1.3.4, a cross site scripting (XSS) vulnerability exists which could allow injection of malicious scripts.
4.3
2018-07-03 CVE-2018-13065 Cross-site Scripting vulnerability in Trustwave Modsecurity 3.0.0
ModSecurity 3.0.0 has XSS via an onerror attribute of an IMG element.
network
low complexity
trustwave CWE-79
6.1
2018-07-03 CVE-2018-12255 Cross-site Scripting vulnerability in Invoiceplane 1.5.10
An XSS issue was discovered in InvoicePlane 1.5.10 via the "Quote PDF Password(Optional)" field.
4.3
2018-07-02 CVE-2018-10076 Cross-site Scripting vulnerability in Zohocorp Manageengine Eventlog Analyzer 11.12
An issue was discovered in Zoho ManageEngine EventLog Analyzer 11.12.
network
zohocorp CWE-79
4.3