Show filters
28 Total Results
Displaying 11-20 of 28
Sort by:
Attacker Value
Unknown
CVE-2018-1000856
Disclosure Date: December 20, 2018 (last updated November 27, 2024)
DomainMOD version 4.09.03 and above. Also verified in the latest version 4.11.01 contains a Cross Site Scripting (XSS) vulnerability in Segment Name field in the segments page that can result in Arbitrary script can be executed on all users browsers who visit the affected page. This attack appear to be exploitable via Victim must visit the vulnerable page. This vulnerability appears to have been fixed in No fix yet.
0
Attacker Value
Unknown
CVE-2018-20011
Disclosure Date: December 10, 2018 (last updated November 27, 2024)
DomainMOD 4.11.01 has XSS via the assets/add/category.php Category Name or Stakeholder field.
0
Attacker Value
Unknown
CVE-2018-20009
Disclosure Date: December 10, 2018 (last updated November 27, 2024)
DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider.php SSL Provider Name or SSL Provider URL field.
0
Attacker Value
Unknown
CVE-2018-20010
Disclosure Date: December 10, 2018 (last updated November 27, 2024)
DomainMOD 4.11.01 has XSS via the assets/add/ssl-provider-account.php username field.
0
Attacker Value
Unknown
CVE-2018-19913
Disclosure Date: December 06, 2018 (last updated November 27, 2024)
DomainMOD through 4.11.01 has XSS via the assets/add/registrar-accounts.php UserName, Reseller ID, or notes field.
0
Attacker Value
Unknown
CVE-2018-19915
Disclosure Date: December 06, 2018 (last updated November 27, 2024)
DomainMOD through 4.11.01 has XSS via the assets/edit/host.php Web Host Name or Web Host URL field.
0
Attacker Value
Unknown
CVE-2018-19914
Disclosure Date: December 06, 2018 (last updated November 27, 2024)
DomainMOD through 4.11.01 has XSS via the assets/add/dns.php Profile Name or notes field.
0
Attacker Value
Unknown
CVE-2018-19892
Disclosure Date: December 06, 2018 (last updated November 27, 2024)
DomainMOD through 4.11.01 has XSS via the admin/dw/add-server.php DisplayName, HostName, or UserName field.
0
Attacker Value
Unknown
CVE-2018-19750
Disclosure Date: November 29, 2018 (last updated November 27, 2024)
DomainMOD through 4.11.01 has XSS via the admin/domain-fields/ notes field in an Add Custom Field action for Custom Domain Fields.
0
Attacker Value
Unknown
CVE-2018-19752
Disclosure Date: November 29, 2018 (last updated November 27, 2024)
DomainMOD through 4.11.01 has XSS via the assets/add/registrar.php notes field for the Registrar.
0