Vulnerabilities > Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

DATE CVE VULNERABILITY TITLE RISK
2024-09-18 CVE-2024-47050 Cross-site Scripting vulnerability in Acquia Mautic
Prior to this patch being applied, Mautic's tracking was vulnerable to Cross-Site Scripting through the Page URL variable.
network
low complexity
acquia CWE-79
6.1
2024-09-18 CVE-2024-47058 Cross-site Scripting vulnerability in Acquia Mautic
With access to edit a Mautic form, the attacker can add Cross-Site Scripting stored in the html filed.
network
low complexity
acquia CWE-79
4.8
2024-09-18 CVE-2024-43024 Cross-site Scripting vulnerability in RWS Multitrans
Multiple stored cross-site scripting (XSS) vulnerabilities in RWS MultiTrans v7.0.23324.2 and earlier allow attackers to execute arbitrary web scripts or HTML via a crafted payload.
network
low complexity
rws CWE-79
6.1
2024-09-18 CVE-2024-43025 Cross-site Scripting vulnerability in RWS Multitrans
An HTML injection vulnerability in RWS MultiTrans v7.0.23324.2 and earlier allows attackers to alter the HTML-layout and possibly execute a phishing attack via a crafted payload injected into a sent e-mail.
network
low complexity
rws CWE-79
6.1
2024-09-18 CVE-2022-25774 Cross-site Scripting vulnerability in Acquia Mautic
Prior to the patched version, logged in users of Mautic are vulnerable to a self XSS vulnerability in the notifications within Mautic. Users could inject malicious code into the notification when saving Dashboards.
network
low complexity
acquia CWE-79
5.4
2024-09-18 CVE-2024-5959 Cross-site Scripting vulnerability in Elizsoftware Panel
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Eliz Software Panel allows Stored XSS.This issue affects Panel: before v2.3.24.
network
low complexity
elizsoftware CWE-79
5.4
2024-09-18 CVE-2024-6877 Cross-site Scripting vulnerability in Elizsoftware Panel
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Eliz Software Panel allows Reflected XSS.This issue affects Panel: before v2.3.24.
network
low complexity
elizsoftware CWE-79
6.1
2024-09-18 CVE-2024-43970 Cross-site Scripting vulnerability in Surecart
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in SureCart allows Reflected XSS.This issue affects SureCart: from n/a through 2.29.3.
network
low complexity
surecart CWE-79
6.1
2024-09-18 CVE-2024-43971 Cross-site Scripting vulnerability in Sunshinephotocart Sunshine Photo Cart
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Sunshine Sunshine Photo Cart allows Reflected XSS.This issue affects Sunshine Photo Cart: from n/a through 3.2.5.
network
low complexity
sunshinephotocart CWE-79
6.1
2024-09-18 CVE-2024-43972 Cross-site Scripting vulnerability in Pagelayer
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Pagelayer Team PageLayer allows Stored XSS.This issue affects PageLayer: from n/a through 1.8.7.
network
low complexity
pagelayer CWE-79
4.8