Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) — Vulnerability Class 21520

21520 vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)). AI Chinese analysis included.

CVE IDTitleCVSSSeverityPublished
CVE-2020-3579 Cisco SD-WAN vManage Software Cross-Site Scripting Vulnerability — Cisco SD-WAN vManage 6.1 -2020-11-06
CVE-2020-3551 Cisco Identity Services Engine Cross-Site Scripting Vulnerability — Cisco Identity Services Engine Software 6.1 Medium2020-11-06
CVE-2020-26083 Cisco Identity Services Engine Cross-Site Scripting Vulnerability — Cisco Identity Services Engine Software 4.8 Medium2020-11-06
CVE-2020-26211 Cross-Site Scripting in BookStack — BookStack 7.7 High2020-11-03
CVE-2020-26210 Cross-Site Scripting in BookStack — BookStack 7.7 High2020-11-03
CVE-2018-19951 QNAP Systems TS-870 跨站脚本漏洞 — Music Station 6.1 -2020-11-02
CVE-2018-19954 QNAP Systems TS-870 跨站脚本漏洞 — Photo Station 6.1 -2020-11-02
CVE-2018-19955 QNAP Systems TS-870 跨站脚本漏洞 — Photo Station 6.1 -2020-11-02
CVE-2018-19956 QNAP Systems TS-870 跨站脚本漏洞 — Photo Station 6.1 -2020-11-02
CVE-2020-15273 Cross-Site Scripting in baserCMS — basercms 7.3 High2020-10-30
CVE-2020-15276 Cross Site Scripting in baserCMS — basercms 7.7 High2020-10-30
CVE-2020-26205 XSS in Sal — Sal 7.6 High2020-10-29
CVE-2018-19943 QNAP Systems TS-870 跨站脚本漏洞 — QTS 8.0 High2020-10-28
CVE-2018-19953 QNAP Systems TS-870 跨站脚本漏洞 — QTS 6.1 -2020-10-28
CVE-2020-8263 Pulse Secure Pulse Connect Secure 跨站脚本漏洞 — Pulse Connect Secure / Pulse Policy Secure 5.4 -2020-10-28
CVE-2020-8262 Pulse Secure Pulse Connect Secure和Pulse Policy Secure 跨站脚本漏洞 — Pulse Connect Secure / Pulse Policy Secure 6.1 -2020-10-28
CVE-2020-15274 Stored XSS via search result in Wiki.js — wiki.js 5.8 Medium2020-10-26
CVE-2020-3580 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities — Cisco Adaptive Security Appliance (ASA) Software 6.1 Medium2020-10-21
CVE-2020-3581 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities — Cisco Adaptive Security Appliance (ASA) Software 6.1 Medium2020-10-21
CVE-2020-3599 Cisco Adaptive Security Appliance Software Web-Based Management Interface Reflected Cross-Site Scripting Vulnerability — Cisco Adaptive Security Appliance (ASA) Software 6.1 Medium2020-10-21
CVE-2020-3583 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities — Cisco Adaptive Security Appliance (ASA) Software 6.1 Medium2020-10-21
CVE-2020-3582 Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software Web Services Interface Cross-Site Scripting Vulnerabilities — Cisco Adaptive Security Appliance (ASA) Software 6.1 Medium2020-10-21
CVE-2020-3515 Cisco Firepower Management Center Software Cross-Site Scripting Vulnerabilities — Cisco Firepower Management Center 4.8 -2020-10-21
CVE-2020-3553 Cisco Firepower Management Center Software Cross-Site Scripting Vulnerabilities — Cisco Firepower Management Center 4.8 -2020-10-21
CVE-2020-24416 Blind stored XSS in Marketo Sales insight plugin for SalesForce — Marketo 6.1 -2020-10-20
CVE-2020-16246 GE Reason S20 Ethernet Switch — Reason S20 Ethernet Switch 6.1 -2020-10-20
CVE-2020-15245 Email verification bypass in Sylius — Sylius 4.3 Medium2020-10-19
CVE-2020-15263 XSS in platform — platform 8.0 High2020-10-19
CVE-2020-1673 Junos OS: Reflected Cross-site Scripting vulnerability in J-Web and web based (HTTP/HTTPS) services — Junos OS 8.8 High2020-10-16
CVE-2020-24408 Stored XSS in customer address upload feature — Magento Commerce 6.1 Medium2020-10-16

Vulnerabilities classified as CWE-79 (在Web页面生成时对输入的转义处理不恰当(跨站脚本)) represent 21520 CVEs. The CWE taxonomy describes the weakness; review individual CVEs for product-specific impact.