Vulnerabilities > Telaxius

DATE CVE VULNERABILITY TITLE RISK
2017-09-22 CVE-2017-14717 Cross-site Scripting vulnerability in Telaxius Epesi
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Description parameter.
network
low complexity
telaxius CWE-79
5.4
2017-09-22 CVE-2017-14716 Cross-site Scripting vulnerability in Telaxius Epesi
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Title parameter.
network
low complexity
telaxius CWE-79
5.4
2017-09-22 CVE-2017-14715 Cross-site Scripting vulnerability in Telaxius Epesi
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Alerts Title parameter.
network
low complexity
telaxius CWE-79
5.4
2017-09-22 CVE-2017-14714 Cross-site Scripting vulnerability in Telaxius Epesi
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Phonecalls Subject parameter.
network
low complexity
telaxius CWE-79
5.4
2017-09-22 CVE-2017-14713 Cross-site Scripting vulnerability in Telaxius Epesi
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Phonecalls Description parameter.
network
low complexity
telaxius CWE-79
5.4
2017-09-22 CVE-2017-14712 Cross-site Scripting vulnerability in Telaxius Epesi
In EPESI 1.8.2 rev20170830, there is Stored XSS in the Tasks Phonecall Notes Title parameter.
network
low complexity
telaxius CWE-79
5.4
2017-05-04 CVE-2017-8763 Cross-site Scripting vulnerability in Telaxius Epesi
Cross-site scripting (XSS) vulnerability in modules/Base/Box/check_for_new_version.php in EPESI in Telaxus/EPESI 1.8.2 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URI that lacks the cid parameter.
network
low complexity
telaxius CWE-79
6.1