Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21524

21524 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2021-21434 XSS in Survey Module — Survey 3.5 Low2021-02-08
CVE-2020-8294 Nextcloud 跨站脚本漏洞 — Nextcloud Server 5.4 -2021-02-03
CVE-2021-21043 Reflected Cross-site Scripting (XSS) on version-compare and page-compare tools — Experience Manager 6.1 Medium2021-02-02
CVE-2021-20186 Moodle 跨站脚本漏洞 — moodle 5.4 -2021-01-28
CVE-2021-20183 Moodle 跨站脚本漏洞 — moodle 6.1 -2021-01-28
CVE-2021-22875 Revive Adserver 跨站脚本漏洞 — https://github.com/revive-adserver/revive-adserver 6.1 -2021-01-28
CVE-2021-22874 Revive Adserver 跨站脚本漏洞 — https://github.com/revive-adserver/revive-adserver 6.1 -2021-01-28
CVE-2021-21283 XSS in Flarum Sticky extension. — sticky 5.4 Medium2021-01-26
CVE-2020-12512 Pepper+Fuchs Comtrol IO-Link Master Cross-Site Scripting — Comtrol IO-Link Master 7.5 High2021-01-22
CVE-2021-21260 XSS in description field — online-invoicing-system 7.6 High2021-01-22
CVE-2021-21259 Stored XSS in slide mode — hedgedoc 7.4 High2021-01-22
CVE-2021-22849 Hyweb HyCMS-J1 - Stored XSS — HyCMS-J1 4.6 Medium2021-01-22
CVE-2021-22871 Revive Adserver 跨站脚本漏洞 — https://github.com/revive-adserver/revive-adserver 4.8 -2021-01-21
CVE-2021-22872 Revive Adserver 跨站脚本漏洞 — https://github.com/revive-adserver/revive-adserver 6.1 -2021-01-21
CVE-2020-8292 Rocket.Chat 跨站脚本漏洞 — Rocket.Chat server 6.1 -2021-01-21
CVE-2020-8288 Rocket.Chat server 跨站脚本漏洞 — Rocket.Chat server 5.4 -2021-01-21
CVE-2021-1271 Cisco Web Security Appliance Stored Cross-Site Scripting Vulnerability — Cisco Web Security Appliance (WSA) 4.8 Medium2021-01-20
CVE-2020-27219 Eclipse hawkBit 跨站脚本漏洞 — Eclipse Hawkbit 7.2 -2021-01-14
CVE-2020-6777 Stored XSS in Bosch PRAESIDEO and Bosch PRAESENSA Management Interface — PRAESIDEO 4.8 Medium2021-01-14
CVE-2021-1151 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1152 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1153 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1154 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1155 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1156 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1157 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1158 Cisco Small Business RV110W, RV130, RV130W, and RV215W Routers Management Interface Stored Cross-Site Scripting Vulnerabilities — Cisco Small Business RV Series Router Firmware 4.8 Medium2021-01-13
CVE-2021-1127 Cisco Enterprise NFV Infrastructure Software Cross-Site Scripting Vulnerability — Cisco Enterprise NFV Infrastructure Software 5.4 Medium2021-01-13
CVE-2021-1130 Cisco DNA Center Cross-Site Scripting Vulnerability — Cisco Digital Network Architecture Center (DNA Center) 4.8 Medium2021-01-13
CVE-2021-1245 Cisco Finesse OpenSocial Gadget Editor Cross-Site Scripting Vulnerability — Cisco Unified Customer Voice Portal (CVP) 6.5 Medium2021-01-13

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21524 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.