Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2017-05-08 CVE-2017-0890 Cross-site Scripting vulnerability in Nextcloud Server
Nextcloud Server before 11.0.3 is vulnerable to an inadequate escaping leading to a XSS vulnerability in the search module.
network
low complexity
nextcloud CWE-79
5.4
2017-05-08 CVE-2017-8833 Cross-site Scripting vulnerability in Zen-Cart ZEN Cart 1.6.0
Zen Cart 1.6.0 has XSS in the main_page parameter to index.php.
network
low complexity
zen-cart CWE-79
6.1
2017-05-08 CVE-2017-8832 Cross-site Scripting vulnerability in Allen Disk Project Allen Disk 1.6
Allen Disk 1.6 has XSS in the id parameter to downfile.php.
network
low complexity
allen-disk-project CWE-79
6.1
2017-05-06 CVE-2017-6029 Cross-site Scripting vulnerability in Certec EDV Gmbh Atvise Scada 2.5.10
A Cross-Site Scripting issue was discovered in Certec EDV GmbH atvise scada prior to Version 3.0.
network
low complexity
certec-edv-gmbh CWE-79
5.4
2017-05-05 CVE-2017-8801 Cross-site Scripting vulnerability in Trendmicro Officescan 11.0/12.0
Trend Micro OfficeScan 11.0 before SP1 CP 6325 (with Agent Module Build before 6152) and XG before CP 1352 has XSS via a crafted URI using a blocked website.
network
low complexity
trendmicro CWE-79
6.1
2017-05-05 CVE-2016-0255 Cross-site Scripting vulnerability in IBM Marketing Platform
IBM Marketing Platform 9.1 and 10.0 is vulnerable to stored cross-site scripting, caused by improper validation of user-supplied input.
network
low complexity
ibm CWE-79
6.1
2017-05-05 CVE-2017-8795 Cross-site Scripting vulnerability in Accellion File Transfer Appliance 80540/911200/911210
An issue was discovered on Accellion FTA devices before FTA_9_12_180.
network
low complexity
accellion CWE-79
6.1
2017-05-05 CVE-2017-8792 Cross-site Scripting vulnerability in Accellion File Transfer Appliance 80540/911200/911210
An issue was discovered on Accellion FTA devices before FTA_9_12_180.
network
low complexity
accellion CWE-79
6.1
2017-05-05 CVE-2017-8760 Cross-site Scripting vulnerability in Accellion File Transfer Appliance 80540/911200/911210
An issue was discovered on Accellion FTA devices before FTA_9_12_180.
network
low complexity
accellion CWE-79
6.1
2017-05-05 CVE-2017-8304 Cross-site Scripting vulnerability in Accellion File Transfer Appliance 80540/911200/911210
An issue was discovered on Accellion FTA devices before FTA_9_12_180.
network
low complexity
accellion CWE-79
6.1