Skip to main content

CWE archive

CWE-79 CVEs

Programmatic archive

46,007 CVEs tagged with CWE-79570 Critical, 4,943 High, 37,367 Medium, 3,091 Low, 36 Unrated.

CVE-2003-1479

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in webcamXP 1.02.432 and 1.02.535 allows remote attackers to inject arbitrary web script or HTML via the message field.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1498

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in search.php for WRENSOFT Zoom Search Engine 2.0 Build 1018 and earlier allows remote attackers to inject arbitrary web script or HTML vi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1506

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in dansguardian.pl in Adelix CensorNet 3.0 through 3.2 allows remote attackers to execute arbitrary script as other users by injecting arb…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1511

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in Bajie Java HTTP Server 0.95 through 0.95zxv4 allows remote attackers to inject arbitrary web script or HTML via (1) the query string to…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1513

Published Dec 31, 2003

Multiple cross-site scripting (XSS) vulnerabilities in example scripts in Caucho Technology Resin 2.0 through 2.1.2 allow remote attackers to inject arbitrary web script or HTML v…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1519

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in Vivisimo clustering engine allows remote attackers to inject arbitrary web script or HTML via the query parameter to the search program.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1522

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in PSCS VPOP3 Web Mail server 2.0e and 2.0f allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to t…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1531

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in testcgi.exe in Lilikoi Software Ceilidh 2.70 and earlier allows remote attackers to inject arbitrary web script or HTML via the query s…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1534

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in jgb.php3 in Justice Guestbook 1.3 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) homepage, (3) ai…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1536

Published Dec 31, 2003

Multiple cross-site scripting (XSS) vulnerabilities in Codeworx Technologies DCP-Portal 5.3.1 allow remote attackers to inject arbitrary web script or HTML via (1) the q parameter…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1539

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in ONEdotOH Simple File Manager (SFM) before 0.21 allows remote attackers to inject arbitrary web script or HTML via (1) file names and (2…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1543

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in Bajie Http Web Server 0.95zxe, 0.95zxc, and possibly others, allows remote attackers to inject arbitrary web script or HTML via the que…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1546

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in gbook.php in Filebased guestbook 1.1.3 allows remote attackers to inject arbitrary web script or HTML via the comment section.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1547

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in block-Forums.php in the Splatt Forum module for PHP-Nuke 6.x allows remote attackers to inject arbitrary web script or HTML via the sub…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1549

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in header.php in MyABraCaDaWeb 1.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the ma_kw parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1554

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in scozbook/add.php in ScozNet ScozBook 1.1 BETA allows remote attackers to inject arbitrary web script or HTML via the (1) username, (2)…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1556

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in cc_guestbook.pl in CGI City CC GuestBook allows remote attackers to inject arbitrary web script or HTML via the (1) name and (2) homepa…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0624

Published Dec 1, 2003

Cross-site scripting (XSS) vulnerability in InteractiveQuery.jsp for BEA WebLogic 8.1 and earlier allows remote attackers to inject malicious web script via the person parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0712

Published Nov 17, 2003

Cross-site scripting (XSS) vulnerability in the HTML encoding for the Compose New Message form in Microsoft Exchange Server 5.5 Outlook Web Access (OWA) allows remote attackers to…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-1151

Published Oct 28, 2003

Cross-site scripting (XSS) vulnerability in Fastream NETFile Server 6.0.3.588 allows remote attackers to inject arbitrary web script or HTML via the URL, which is displayed on a "…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0801

Published Oct 6, 2003

Cross-site scripting (XSS) vulnerability in Nokia Electronic Documentation (NED) 5.0 allows remote attackers to execute arbitrary web script and steal cookies via a URL to the doc…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0310

Published Jun 16, 2003

Cross-site scripting (XSS) vulnerability in articleview.php for eZ publish 2.2 allows remote attackers to insert arbitrary web script.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1651

Published Dec 31, 2002

Cross-site scripting (XSS) vulnerability in Verity Search97 allows remote attackers to insert arbitrary web content and steal sensitive information from other clients, possibly du…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1852

Published Dec 31, 2002

Cross-site scripting (XSS) vulnerability in Monkey 0.5.0 allows remote attackers to inject arbitrary web script or HTML via (1) the URL or (2) a parameter to test2.pl.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 45,951-45,975 of 46,007 CVEsPage 1839 of 1841