Skip to main content

CWE archive

CWE-79 CVEs

Programmatic archive

45,946 CVEs tagged with CWE-79569 Critical, 4,930 High, 37,323 Medium, 3,088 Low, 36 Unrated.

CVE-2008-0676

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in search.php in A-Blog 2 allows remote attackers to inject arbitrary web script or HTML via the words parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0679

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in index.php in BlogPHP 2.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0684

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in ViewCat.php in iTechClassifieds 3.0 allows remote attackers to inject arbitrary web script or HTML via the CatID parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0688

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in catalog.php in Smartscript Domain Trader 2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter in a v…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0694

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in the HTTP Server in IBM OS/400 V5R3M0 and V5R4M0 allows remote attackers to inject arbitrary web script or HTML via the Expect HTTP head…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0700

Published Feb 12, 2008

Cross-site scripting (XSS) vulnerability in search.php in Crux Software CruxCMS 3.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter. NOTE:…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0605

Published Feb 6, 2008

Multiple cross-site scripting (XSS) vulnerabilities in AstroSoft HelpDesk before 1.95.228 allow remote attackers to inject arbitrary web script or HTML via the (1) txtSearch param…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0617

Published Feb 6, 2008

Multiple cross-site scripting (XSS) vulnerabilities in the DMSGuestbook 1.7.0 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) file p…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0618

Published Feb 6, 2008

Multiple cross-site scripting (XSS) vulnerabilities in the DMSGuestbook 1.8.0 and 1.7.0 plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0622

Published Feb 6, 2008

Cross-site scripting (XSS) vulnerability in RaidenHTTPD 2.0.19 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the ul…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6700

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in cgi-bin/bgplg in the web interface for the BGPD daemon in OpenBSD 4.1 allows remote attackers to inject arbitrary web script or HTML vi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0564

Published Feb 5, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Mailman before 2.1.10b1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1)…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0574

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in index.php in webSPELL 4.01.02 allows remote attackers to inject arbitrary web script or HTML via the sort parameter in a whoisonline ac…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0576

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in the Project Issue Tracking module 5.x-2.x-dev before 20080130 in the 5.x-2.x series, 5.x-1.2 and earlier in the 5.x-1.x series, 4.7.x-2…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0578

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in the web management login page in Tripwire Enterprise 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0178

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in the Enterprise Admin Session Monitoring component in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web scr…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0179

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in service/impl/UserLocalServiceImpl.java in Liferay Portal 4.3.6 allows remote attackers to inject arbitrary web script or HTML via the U…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-0180

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in themes/_unstyled/templates/init.vm in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web script or HTML via…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0181

Published Feb 5, 2008

Cross-site scripting (XSS) vulnerability in the Admin portlet in Liferay Portal 4.3.6 allows remote authenticated users to inject arbitrary web script or HTML via the Shutdown mes…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-0558

Published Feb 4, 2008

Cross-site scripting (XSS) vulnerability in Uniwin eCart Professional before 2.0.16 allows remote attackers to inject arbitrary web script or HTML via the rp parameter to cartView…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6695

Published Feb 1, 2008

Cross-site scripting (XSS) vulnerability in index.php in Drake CMS 0.4.9 allows remote attackers to inject arbitrary web script or HTML via the option parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-6696

Published Feb 1, 2008

Multiple cross-site scripting (XSS) vulnerabilities in WebCalendar 1.1.6 allow remote attackers to inject arbitrary web script or HTML via (1) an event description, (2) the query…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2008-0539

Published Feb 1, 2008

Cross-site scripting (XSS) vulnerability in dms/policy/rep_request.php in F5 BIG-IP Application Security Manager (ASM) 9.4.3 allows remote attackers to inject arbitrary web script…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 45,226-45,250 of 45,946 CVEsPage 1810 of 1838