Concrete5 8.5.4 – ‘name’ Stored XSS
>> TAG: #0day
Concrete5 8.5.4 – ‘name’ Stored XSS
Equipment Inventory System 1.0 – ‘multiple’ Stored XSS
Budget Management System 1.0 – ‘Budget title’ Stored XSS
SyncBreeze 10.1.16 – XML Parsing Stack-based Buffer Overflow
GetSimple CMS Custom JS Plugin 0.1 – CSRF to Persistent XSS
Regis Inventory And Monitoring System 1.0 – ‘Item List’ Stored XSS
Moodle 3.10.3 – ‘label’ Persistent Cross Site Scripting
Ovidentia 6 – ‘id’ SQL injection (Authenticated)
Linksys EA7500 2.0.8.194281 – Cross-Site Scripting
Genexis Platinum-4410 P4410-V2-1.31A – ‘start_addr’ Persistent Cross-Site Scripting