Vulnerabilities > Egavilanmedia > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-01-28 | CVE-2020-36115 | Cross-site Scripting vulnerability in Egavilanmedia PHPcrud 1.0 Stored Cross Site Scripting (XSS) vulnerability in EGavilan Media CRUD Operation with PHP, MySQL, Bootstrap, and Dompdf via First Name or Last Name parameter in the 'Add New Record Feature'. | 5.4 |
2020-12-30 | CVE-2020-29231 | Cross-site Scripting vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page. | 5.4 |
2020-12-30 | CVE-2020-29230 | Cross-site Scripting vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Panel - Manage User tab using the Full Name of the user. | 6.1 |
2020-12-23 | CVE-2020-35252 | Cross-site Scripting vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 Cross Site Scripting (XSS) vulnerability via the 'Full Name' parameter in the User Registration section of User Registration & Login System with Admin Panel 1.0. | 6.1 |
2020-12-15 | CVE-2020-35396 | Cross-site Scripting vulnerability in Egavilanmedia Barcodes Generator 1.0 EGavilan Barcodes generator 1.0 is affected by: Cross Site Scripting (XSS) via the index.php. | 6.1 |
2020-12-15 | CVE-2020-35395 | Cross-site Scripting vulnerability in Egavilanmedia Expense Management System 1.0 XSS in the Add Expense Component of EGavilan Media Expense Management System 1.0 allows an attacker to permanently store malicious JavaScript code via the 'description' field | 6.1 |