Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2017-11-30 CVE-2017-14197 Cross-site Scripting vulnerability in Squiz Matrix
An issue was discovered in Squiz Matrix before 5.3.6.1 and 5.4.x before 5.4.1.3.
network
low complexity
squiz CWE-79
6.1
2017-11-29 CVE-2017-14186 Cross-site Scripting vulnerability in Fortinet Fortios
A Cross-site Scripting (XSS) vulnerability in Fortinet FortiOS 6.0.0 to 6.0.4, 5.6.0 to 5.6.7, 5.4 and below versions under SSL VPN web portal allows a remote user to inject arbitrary web script or HTML in the context of the victim's browser via the login redir parameter.
network
low complexity
fortinet CWE-79
5.4
2017-11-29 CVE-2017-17059 Cross-site Scripting vulnerability in Amtythumb Project Amtythumb
XSS exists in the amtyThumb amty-thumb-recent-post (aka amtyThumb posts or wp-thumb-post) plugin 8.1.3 for WordPress via the query string to amtyThumbPostsAdminPg.php.
network
low complexity
amtythumb-project CWE-79
6.1
2017-11-28 CVE-2017-17043 Cross-site Scripting vulnerability in Zitec Emag Marketplace Connector 1.0.0
The Emag Marketplace Connector plugin 1.0.0 for WordPress has reflected XSS because the parameter "post" to /wp-content/plugins/emag-marketplace-connector/templates/order/awb-meta-box.php is not filtered correctly.
network
low complexity
zitec CWE-79
6.1
2017-11-28 CVE-2017-14379 Cross-site Scripting vulnerability in EMC RSA Authentication Manager
EMC RSA Authentication Manager before 8.2 SP1 P6 has a cross-site scripting vulnerability that could potentially be exploited by malicious users to compromise the affected system.
network
low complexity
emc CWE-79
5.4
2017-11-27 CVE-2017-1689 Cross-site Scripting vulnerability in IBM Rational Doors Next Generation
IBM DOORS Next Generation (DNG/RRC) 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-11-27 CVE-2017-1688 Cross-site Scripting vulnerability in IBM Rational Doors Next Generation
IBM DOORS Next Generation (DNG/RRC) 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-11-27 CVE-2017-1678 Cross-site Scripting vulnerability in IBM Rational Doors Next Generation
IBM DOORS Next Generation (DNG/RRC) 4.0, 5.0, and 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-11-27 CVE-2017-1650 Cross-site Scripting vulnerability in IBM Rational Doors Next Generation
IBM DOORS Next Generation (DNG/RRC) 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4
2017-11-27 CVE-2017-1607 Cross-site Scripting vulnerability in IBM Rational Doors Next Generation
IBM DOORS Next Generation (DNG/RRC) 6.0 is vulnerable to cross-site scripting.
network
low complexity
ibm CWE-79
5.4