Vulnerabilities > Squaredup > Low

DATE CVE VULNERABILITY TITLE RISK
2021-12-07 CVE-2021-40096 Cross-site Scripting vulnerability in Squaredup 4.6/5.2.1.6654
A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via modification of the authorisationUrl in some integration configurations.
network
squaredup CWE-79
3.5
2021-12-07 CVE-2021-40094 Cross-site Scripting vulnerability in Squaredup 4.6/5.2.1.6654
A DOM-based XSS vulnerability affects SquaredUp for SCOM 5.2.1.6654.
network
squaredup CWE-79
3.5
2021-12-07 CVE-2021-40093 Cross-site Scripting vulnerability in Squaredup 4.6/5.2.1.6654
A cross-site scripting (XSS) vulnerability in integration configuration in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via dashboard actions.
network
squaredup CWE-79
3.5
2021-12-07 CVE-2021-40092 Cross-site Scripting vulnerability in Squaredup 4.6/5.2.1.6654
A cross-site scripting (XSS) vulnerability in Image Tile in SquaredUp for SCOM 5.2.1.6654 allows remote attackers to inject arbitrary web script or HTML via an SVG file.
network
squaredup CWE-79
3.5