Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2017-02-13 CVE-2016-9371 Cross-site Scripting vulnerability in Moxa products
An issue was discovered in Moxa NPort 5110 versions prior to 2.6, NPort 5130/5150 Series versions prior to 3.6, NPort 5200 Series versions prior to 2.8, NPort 5400 Series versions prior to 3.11, NPort 5600 Series versions prior to 3.7, NPort 5100A Series & NPort P5150A versions prior to 1.3, NPort 5200A Series versions prior to 1.3, NPort 5150AI-M12 Series versions prior to 1.2, NPort 5250AI-M12 Series versions prior to 1.2, NPort 5450AI-M12 Series versions prior to 1.2, NPort 5600-8-DT Series versions prior to 2.4, NPort 5600-8-DTL Series versions prior to 2.4, NPort 6x50 Series versions prior to 1.13.11, NPort IA5450A versions prior to v1.4.
network
low complexity
moxa CWE-79
6.1
2017-02-13 CVE-2016-8359 Cross-site Scripting vulnerability in Moxa products
An issue was discovered in Moxa ioLogik E1210, firmware Version V2.4 and prior, ioLogik E1211, firmware Version V2.3 and prior, ioLogik E1212, firmware Version V2.4 and prior, ioLogik E1213, firmware Version V2.5 and prior, ioLogik E1214, firmware Version V2.4 and prior, ioLogik E1240, firmware Version V2.3 and prior, ioLogik E1241, firmware Version V2.4 and prior, ioLogik E1242, firmware Version V2.4 and prior, ioLogik E1260, firmware Version V2.4 and prior, ioLogik E1262, firmware Version V2.4 and prior, ioLogik E2210, firmware versions prior to V3.13, ioLogik E2212, firmware versions prior to V3.14, ioLogik E2214, firmware versions prior to V3.12, ioLogik E2240, firmware versions prior to V3.12, ioLogik E2242, firmware versions prior to V3.12, ioLogik E2260, firmware versions prior to V3.13, and ioLogik E2262, firmware versions prior to V3.12.
network
low complexity
moxa CWE-79
6.1
2017-02-13 CVE-2016-8356 Cross-site Scripting vulnerability in Kabona AB Webdatorcentral
An issue was discovered in Kabona AB WebDatorCentral (WDC) application prior to Version 3.4.0.
network
low complexity
kabona-ab CWE-79
8.2
2017-02-13 CVE-2016-5811 Cross-site Scripting vulnerability in Visonic Powerlink2 Firmware
An issue was discovered in Visonic PowerLink2, all versions prior to October 2016 firmware release.
network
low complexity
visonic CWE-79
6.1
2017-02-13 CVE-2016-2274 Cross-site Scripting vulnerability in Adcon Telemetry A850 Telemetry Gateway Base Station Firmware
An issue was discovered in Adcon Telemetry A850 Telemetry Gateway Base Station.
network
low complexity
adcon-telemetry CWE-79
6.1
2017-02-13 CVE-2014-9760 Cross-site Scripting vulnerability in Gosa Project Gosa
Cross-site scripting (XSS) vulnerability in the displayLogin function in html/index.php in GOsa allows remote attackers to inject arbitrary web script or HTML via the username.
network
low complexity
gosa-project CWE-79
6.1
2017-02-13 CVE-2017-3902 Cross-site Scripting vulnerability in Mcafee Epolicy Orchestrator
Cross-site scripting (XSS) vulnerability in the Web user interface (UI) in Intel Security ePO 5.1.3, 5.1.2, 5.1.1, and 5.1.0 allows authenticated users to inject malicious Java scripts via bypassing input validation.
network
low complexity
mcafee CWE-79
5.4
2017-02-12 CVE-2017-5964 Cross-site Scripting vulnerability in Openenergymonitor Emoncms
An issue was discovered in Emoncms through 9.8.0.
network
low complexity
openenergymonitor CWE-79
6.1
2017-02-12 CVE-2017-5963 Cross-site Scripting vulnerability in Caddy Project Caddy
An issue was discovered in caddy (for TYPO3) before 7.2.10.
network
low complexity
caddy-project CWE-79
6.1
2017-02-12 CVE-2017-5962 Cross-site Scripting vulnerability in Netresearch Contexts Wurfl
An issue was discovered in contexts_wurfl (for TYPO3) before 0.4.2.
network
low complexity
netresearch CWE-79
6.1