Vulnerabilities > Domainmod > Low

DATE CVE VULNERABILITY TITLE RISK
2021-08-12 CVE-2020-20990 Cross-site Scripting vulnerability in Domainmod 4.13.0
A cross site scripting (XSS) vulnerability in the /segments/edit.php component of Domainmod 4.13 allows attackers to execute arbitrary web scripts or HTML via the Segment Name parameter.
network
domainmod CWE-79
3.5
2021-08-12 CVE-2020-20988 Cross-site Scripting vulnerability in Domainmod 4.13.0
A cross site scripting (XSS) vulnerability in the /domains/cost-by-owner.php component of Domainmod 4.13 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the "or Expiring Between" parameter.
network
domainmod CWE-79
3.5
2018-12-20 CVE-2018-1000856 Cross-site Scripting vulnerability in Domainmod
DomainMOD version 4.09.03 and above.
network
domainmod CWE-79
3.5
2018-12-10 CVE-2018-20009 Cross-site Scripting vulnerability in Domainmod
DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider.php SSL Provider Name or SSL Provider URL field.
network
domainmod CWE-79
3.5
2018-12-10 CVE-2018-20010 Cross-site Scripting vulnerability in Domainmod
DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider-account.php username field.
network
domainmod CWE-79
3.5
2018-12-10 CVE-2018-20011 Cross-site Scripting vulnerability in Domainmod
DomainMOD 4.11.01 has XSS via the assets/add/category.php Category Name or Stakeholder field.
network
domainmod CWE-79
3.5
2018-12-06 CVE-2018-19913 Cross-site Scripting vulnerability in Domainmod
DomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.
network
domainmod CWE-79
3.5
2018-12-06 CVE-2018-19914 Cross-site Scripting vulnerability in Domainmod
DomainMOD through 4.11.01 has XSS via the assets/add/dns.php Profile Name or notes field.
network
domainmod CWE-79
3.5
2018-12-06 CVE-2018-19915 Cross-site Scripting vulnerability in Domainmod
DomainMOD through 4.11.01 has XSS via the assets/edit/host.php Web Host Name or Web Host URL field.
network
domainmod CWE-79
3.5
2018-12-06 CVE-2018-19892 Cross-site Scripting vulnerability in Domainmod
DomainMOD through 4.11.01 has XSS via the admin/dw/add-server.php DisplayName, HostName, or UserName field.
network
domainmod CWE-79
3.5