Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2017-12-30 CVE-2017-12813 Cross-site Scripting vulnerability in Stivasoft PHPjabbers File Sharing Script 1.0
PHPJabbers File Sharing Script 1.0 has stored XSS in the comments section.
network
low complexity
stivasoft CWE-79
6.1
2017-12-30 CVE-2017-12812 Cross-site Scripting vulnerability in Stivasoft PHPjabbers Night Club Booking Software 1.0
PHPJabbers Night Club Booking Software has stored XSS in the name parameter in the reservations tab.
network
low complexity
stivasoft CWE-79
6.1
2017-12-30 CVE-2017-12811 Cross-site Scripting vulnerability in Stivasoft PHPjabbers Star Rating Script 4.0
PHPJabbers Star Rating Script 4.0 has stored XSS via a rating item.
network
low complexity
stivasoft CWE-79
6.1
2017-12-30 CVE-2017-12810 Cross-site Scripting vulnerability in Stivasoft PHPjabbers Newsletter Script 4.2
PHPJabbers PHP Newsletter Script 4.2 has stored XSS in lists in the admin panel.
network
low complexity
stivasoft CWE-79
6.1
2017-12-30 CVE-2017-17995 Cross-site Scripting vulnerability in Iwcnetwork Biometric Shift Employee Management System 4.0
Biometric Shift Employee Management System has XSS via the Last_Name parameter in an index.php?user=ajax request.
network
low complexity
iwcnetwork CWE-79
5.4
2017-12-30 CVE-2017-17994 Cross-site Scripting vulnerability in Iwcnetwork Biometric Shift Employee Management System 4.0
Biometric Shift Employee Management System has XSS via the criteria parameter in an index.php?user=competency_criteria request.
network
low complexity
iwcnetwork CWE-79
5.4
2017-12-30 CVE-2017-17993 Cross-site Scripting vulnerability in Iwcnetwork Biometric Shift Employee Management System 4.0
Biometric Shift Employee Management System has XSS via the amount parameter in an index.php?user=addition_deduction request.
network
low complexity
iwcnetwork CWE-79
5.4
2017-12-30 CVE-2017-17991 Cross-site Scripting vulnerability in Iwcnetwork Biometric Shift Employee Management System 4.0
Biometric Shift Employee Management System has XSS via the expense_name parameter in an index.php?user=expenses request.
network
low complexity
iwcnetwork CWE-79
5.4
2017-12-30 CVE-2017-17989 Cross-site Scripting vulnerability in Iwcnetwork Biometric Shift Employee Management System 4.0
Biometric Shift Employee Management System has XSS via the index.php holiday_name parameter in an edit_holiday action.
network
low complexity
iwcnetwork CWE-79
5.4
2017-12-30 CVE-2017-17988 Cross-site Scripting vulnerability in Muslim Matrimonial Script Project Muslim Matrimonial Script 3.0.3
PHP Scripts Mall Muslim Matrimonial Script has XSS via the admin/event_add.php event_title parameter.
network
low complexity
muslim-matrimonial-script-project CWE-79
4.8