Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2017-08-30 CVE-2017-14036 Cross-site Scripting vulnerability in Crushftp
CrushFTP before 7.8.0 and 8.x before 8.2.0 has XSS.
network
crushftp CWE-79
4.3
2017-08-30 CVE-2016-6800 Cross-site Scripting vulnerability in Apache Ofbiz
The default configuration of the Apache OFBiz framework offers a blog functionality.
network
low complexity
apache CWE-79
6.1
2017-08-30 CVE-2017-13778 Cross-site Scripting vulnerability in Fiyo CMS 2.0.7
Fiyo CMS 2.0.7 has XSS in dapur\apps\app_config\sys_config.php via the site_name parameter.
network
fiyo CWE-79
4.3
2017-08-30 CVE-2017-13762 Cross-site Scripting vulnerability in Onosproject Onos 1.10.0/1.8.0/1.9.0
ONOS versions 1.8.0, 1.9.0, and 1.10.0 are vulnerable to XSS.
4.3
2017-08-29 CVE-2017-1535 Cross-site Scripting vulnerability in IBM Cognos Analytics
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2017-08-29 CVE-2017-1485 Cross-site Scripting vulnerability in IBM Cognos Analytics
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2017-08-29 CVE-2017-1427 Cross-site Scripting vulnerability in IBM Cognos Analytics
IBM Cognos Analytics 11.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
4.3
2017-08-29 CVE-2016-2975 Cross-site Scripting vulnerability in IBM Sametime
IBM Sametime 8.5.2 and 9.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2017-08-29 CVE-2016-2967 Cross-site Scripting vulnerability in IBM Sametime
IBM Sametime 8.5.2 and 9.0 is vulnerable to cross-site scripting.
network
ibm CWE-79
3.5
2017-08-29 CVE-2017-3155 Cross-site Scripting vulnerability in Apache Atlas 0.6.0/0.7.0
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to cross frame scripting.
network
low complexity
apache CWE-79
6.1