CVEs (114)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Unrestricted XML Files Leads to Stored XSS in GitHub repository microweber/microweber prior to 1.2.12. |
The microweber application allows large characters to insert in the input field "post title" which can allow attackers to cause a Denial of Service (DoS) via a crafted HTTP request. in GitHub repository microweber/microw...Show more |
Multiple Stored Cross-site Scripting (XSS) Vulnerabilities in Shop's Other Settings, Shop's Autorespond E-mail Settings and Shops' Payments Methods in GitHub repository microweber/microweber prior to 1.2.11. |
File upload filter bypass leading to stored XSS in GitHub repository microweber/microweber prior to 1.2.12. |
XSS on dynamic_text module in GitHub repository microweber/microweber prior to 1.2.11. |
File upload filter bypass leading to stored XSS in GitHub repository microweber/microweber prior to 1.2.12. |
Abusing Backup/Restore feature to achieve Remote Code Execution in GitHub repository microweber/microweber prior to 1.2.12. |
Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 1.2.12. |
Integer Overflow or Wraparound in GitHub repository microweber/microweber prior to 1.3. |
Unrestricted Upload of File with Dangerous Type in GitHub repository microweber/microweber prior to 1.2.11. |
Unrestricted file upload leads to stored XSS in GitHub repository microweber/microweber prior to 1.1.12. |
Static Code Injection in GitHub repository microweber/microweber prior to 1.3. |
Improper Neutralization of Special Elements Used in a Template Engine in GitHub repository microweber/microweber prior to 1.3. |
Weak Password Recovery Mechanism for Forgotten Password in GitHub repository microweber/microweber prior to 1.3. |
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.2.11. |
Cross-site Scripting (XSS) - Stored in GitHub repository microweber/microweber prior to 1.3. |
Incorrect Authorization in GitHub repository microweber/microweber prior to 1.3. |
Insecure Storage of Sensitive Information in GitHub repository microweber/microweber prior to 1.3. |
Insertion of Sensitive Information Into Debugging Code in GitHub repository microweber/microweber prior to 1.3. |
Cross-site Scripting (XSS) - Reflected in GitHub repository microweber/microweber prior to 1.3. |