Skip to main content

CWE archive

CWE-79 CVEs

Programmatic archive

45,526 CVEs tagged with CWE-79558 Critical, 4,807 High, 37,048 Medium, 3,075 Low, 38 Unrated.

CVE-2007-5176

Published Oct 3, 2007

Multiple cross-site scripting (XSS) vulnerabilities in GroupLink eHelpDesk 6.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) NA_DISPLAYNAME parameter…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5179

Published Oct 3, 2007

Multiple cross-site scripting (XSS) vulnerabilities in iletisim.asp in Y&K Iletisim Formu allow remote attackers to inject arbitrary web script or HTML via the (1) ad, (2) sehir,…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5182

Published Oct 3, 2007

Cross-site scripting (XSS) vulnerability in mail.asp in Netkamp Emlak Scripti allows remote attackers to inject arbitrary web script or HTML via the (1) Email parameter, and possi…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5183

Published Oct 3, 2007

Cross-site scripting (XSS) vulnerability in Mailbox.mws in OdysseySuite, possibly 4.0.729, allows remote attackers to inject arbitrary web script or HTML via the idkey parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5161

Published Oct 1, 2007

Cross-zone scripting vulnerability in the internal browser in i-Systems Feedreader 3.10 allows remote attackers to inject arbitrary web script or HTML via an item in a feed, as de…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5136

Published Sep 28, 2007

Cross-site scripting (XSS) vulnerability in DFD Cart 1.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5142

Published Sep 28, 2007

Cross-site scripting (XSS) vulnerability in buscar.asp in Solidweb Novus 1.0 allows remote attackers to inject arbitrary web script or HTML via the p parameter. NOTE: the provena…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-3761

Published Sep 27, 2007

Cross-site scripting (XSS) vulnerability in Safari in Apple iPhone 1.1.1 allows remote attackers to inject arbitrary web script or HTML by causing Javascript events to be applied…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5127

Published Sep 27, 2007

Multiple cross-site scripting (XSS) vulnerabilities in SimpGB 1.46.02 allow remote attackers to inject arbitrary web script or HTML via (1) the l_username parameter to the default…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5120

Published Sep 27, 2007

Multiple cross-site scripting (XSS) vulnerabilities in JSPWiki 2.4.103 and 2.5.139-beta allow remote attackers to inject arbitrary web script or HTML via the (1) group and (2) mem…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5121

Published Sep 27, 2007

Cross-site scripting (XSS) vulnerability in JSPWiki 2.5.139-beta allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to wiki-3/Login.jsp and…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5112

Published Sep 26, 2007

Cross-site scripting (XSS) vulnerability in session.cgi (aka the login page) in Google Urchin 5 5.7.03 and earlier allows remote attackers to inject arbitrary web script or HTML v…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5105

Published Sep 26, 2007

Cross-site scripting (XSS) vulnerability in wp-register.php in WordPress 2.0 and 2.0.1 allows remote attackers to inject arbitrary web script or HTML via the user_email parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5106

Published Sep 26, 2007

Cross-site scripting (XSS) vulnerability in wp-register.php in WordPress 2.0 allows remote attackers to inject arbitrary web script or HTML via the user_login parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-4874

Published Sep 26, 2007

Multiple cross-site scripting (XSS) vulnerabilities in SimpNews 2.41.03 allow remote attackers to inject arbitrary web script or HTML via the (1) l_username parameter to admin/lay…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5088

Published Sep 26, 2007

Cross-site scripting (XSS) vulnerability in search/cust_bill_event.cgi in Freeside 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the failed parameter.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5091

Published Sep 26, 2007

Multiple cross-site scripting (XSS) vulnerabilities in eGroupWare 1.4.001 allow remote attackers to inject arbitrary web script or HTML via the cat_data[color] parameter to (1) pr…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5072

Published Sep 24, 2007

Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog (SPHPBlog) before 0.5.1, when register_globals is enabled, allow remote attackers to inject arbitrary web sc…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5058

Published Sep 24, 2007

Cross-site scripting (XSS) vulnerability in the Web administration interface in Barracuda Spam Firewall before firmware 3.5.10.016 allows remote attackers to inject arbitrary web…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5059

Published Sep 24, 2007

Multiple cross-site scripting (XSS) vulnerabilities in GreenSQL allow remote attackers to inject arbitrary web script or HTML via several vectors, as demonstrated by the (1) uname…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5046

Published Sep 24, 2007

Cross-site scripting (XSS) vulnerability in the Webmail interface for IceWarp Merak Mail Server before 9.0.0 allows remote attackers to inject arbitrary JavaScript via a javascrip…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5051

Published Sep 24, 2007

Multiple cross-site scripting (XSS) vulnerabilities in PhpGedView 4.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) box_width, (2) PEDIGREE_GENERATIO…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5052

Published Sep 24, 2007

Multiple cross-site scripting (XSS) vulnerabilities in index.php in Vigile CMS 1.8 allow remote attackers to inject arbitrary web script or HTML via a request to the wiki module w…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 45,101-45,125 of 45,526 CVEsPage 1805 of 1822