CVEs (5)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a User Profile. |
In Crea8social 2018.2, there is Reflected Cross-Site Scripting via the term parameter to the /search URI. |
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post comment. |
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post. |
Cross-site scripting (XSS) vulnerability in the Games feature in Crea8Social 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the Game Content field in Add Game. |