Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2018-05-22 CVE-2018-11343 Cross-site Scripting vulnerability in Asustor Soundsgood
A persistent cross site scripting vulnerability in playlistmanger.cgi in the ASUSTOR SoundsGood application allows attackers to store cross site scripting payloads via the 'playlist' POST parameter.
network
low complexity
asustor CWE-79
5.4
2018-05-22 CVE-2018-11339 Cross-site Scripting vulnerability in Frappe Erpnext 11.X.Xdevelopb1036E5
An XSS issue was discovered in Frappe ERPNext v11.x.x-develop b1036e5 via a comment.
network
low complexity
frappe CWE-79
6.1
2018-05-21 CVE-2017-2607 Cross-site Scripting vulnerability in Jenkins
jenkins before versions 2.44, 2.32.2 is vulnerable to a persisted cross-site scripting vulnerability in console notes (SECURITY-382).
network
low complexity
jenkins CWE-79
5.4
2018-05-21 CVE-2018-11330 Cross-site Scripting vulnerability in Pluck-Cms Pluck
An issue was discovered in Pluck before 4.7.6.
network
low complexity
pluck-cms CWE-79
4.8
2018-05-19 CVE-2018-4941 Cross-site Scripting vulnerability in Adobe Coldfusion 11.0/2016
Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Cross-Site Scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4940 Cross-site Scripting vulnerability in Adobe Coldfusion 11.0/2016
Adobe ColdFusion Update 5 and earlier versions, ColdFusion 11 Update 13 and earlier versions have an exploitable Cross-Site Scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4931 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.1 and earlier have an exploitable stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4930 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.3 and earlier have an exploitable Cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-19 CVE-2018-4929 Cross-site Scripting vulnerability in Adobe Experience Manager
Adobe Experience Manager versions 6.2 and earlier have an exploitable stored cross-site scripting vulnerability.
network
low complexity
adobe CWE-79
6.1
2018-05-18 CVE-2018-1147 Cross-site Scripting vulnerability in Tenable Nessus
In Nessus before 7.1.0, a XSS vulnerability exists due to improper input validation.
network
low complexity
tenable CWE-79
5.4