CWE-80
High likelihoodImproper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS)
The product receives input from an upstream component, but it does not neutralize or incorrectly neutralizes special characters such as "<", ">", and "&" that could be interpreted as web-scripting elements when they are sent to a downstream component that processes web pages.
517 vulnerabilities with CWE-80
CVE-2024-39363
CRITICAL
Wavlink Wl-wn533a8 Firmware - Basic XSS
CVSS 9.6
CVE-2024-52967
LOW
Fortinet Fortiportal < 6.0.15 - Basic XSS
CVSS 3.5
CVE-2024-51472
LOW
IBM Devops Deploy < 8.0.1.3 - Basic XSS
CVSS 3.1
CVE-2024-56199
MEDIUM
Phpmyfaq < 4.0.2 - Basic XSS
CVSS 5.2
CVE-2024-41752
MEDIUM
IBM Cognos Analytics < 11.2.4 - Basic XSS
CVSS 5.4
CVE-2024-12127
MEDIUM
Sikshya LMS <0.0.21 - XSS
CVSS 6.1
CVE-2024-54223
MEDIUM
ARForms Form Builder <1.7.1 - Code Injection
CVSS 5.3
CVE-2024-54128
MEDIUM
Directus - HTML Injection
CVSS 5.7
CVE-2024-54001
MEDIUM
Kanboard - XSS
CVSS 5.5
CVE-2024-42195
LOW
Hcltechsw Hcl Devops Deploy < 8.0.1.4 - Basic XSS
CVSS 3.1
CVE-2024-11479
MEDIUM
Issuetrak <17.1 - HTML Injection
CVE-2024-52598
HIGH
2fauth < 5.4.1 - Basic XSS
CVSS 7.5
CVE-2024-52597
MEDIUM
2fauth < 5.4.1 - Basic XSS
CVSS 6.1
CVE-2024-11404
MEDIUM
django Filer <3.3 - Basic XSS
CVSS 5.5
CVE-2024-10592
MEDIUM
Mapster WP Maps <1.6.0 - XSS
CVSS 6.4
CVE-2024-52300
CRITICAL
XWiki <2.5.5 - XSS
CVSS 9.0
CVE-2024-10038
MEDIUM
WP-Strava <2.12.1 - XSS
CVSS 6.1
CVE-2024-51689
HIGH
CF7 WOW Styler <1.6.8 - XSS
CVSS 7.1
CVE-2024-10621
MEDIUM
Simple Shortcode for Google Maps <1.5.4 - XSS
CVSS 6.4
CVE-2024-20504
MEDIUM
Cisco AsyncOS - XSS
CVSS 5.4
CVE-2024-51735
HIGH
Osmedeus - XSS
CVE-2024-49377
MEDIUM
OctoPrint <1.10.2 - XSS
CVSS 5.5
CVE-2024-9147
MEDIUM
BNA Pospratik < 3.2.1 - Basic XSS
CVSS 6.1
CVE-2024-50344
MEDIUM
I Librarian - RCE
CVSS 4.6
CVE-2024-9438
MEDIUM
SEUR Oficial <2.2.11 - XSS
CVSS 6.1
Details
Vulnerabilities
517
Exploit Likelihood
High