Show filters
538 Total Results
Displaying 161-170 of 538
Sort by:
Attacker Value
Unknown

CVE-2022-36962

Disclosure Date: November 22, 2022 (last updated February 24, 2025)
SolarWinds Platform was susceptible to Command Injection. This vulnerability allows a remote adversary with complete control over the SolarWinds database to execute arbitrary commands.
Attacker Value
Unknown

CVE-2022-36960

Disclosure Date: November 22, 2022 (last updated February 24, 2025)
SolarWinds Platform was susceptible to Improper Input Validation. This vulnerability allows a remote adversary with valid access to SolarWinds Web Console to escalate user privileges.
Attacker Value
Unknown

CVE-2022-44069

Disclosure Date: November 16, 2022 (last updated February 24, 2025)
Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via the Nest library module.
Attacker Value
Unknown

CVE-2022-44073

Disclosure Date: November 16, 2022 (last updated February 24, 2025)
Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via svg,Users & Contacts.
Attacker Value
Unknown

CVE-2022-44071

Disclosure Date: November 16, 2022 (last updated February 24, 2025)
Zenario CMS 9.3.57186 is is vulnerable to Cross Site Scripting (XSS) via profile.
Attacker Value
Unknown

CVE-2022-44070

Disclosure Date: November 16, 2022 (last updated February 24, 2025)
Zenario CMS 9.3.57186 is vulnerable to Cross Site Scripting (XSS) via News articles.
Attacker Value
Unknown

CVE-2022-43120

Disclosure Date: November 09, 2022 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in the /panel/fields/add component of Intelliants Subrion CMS v4.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Field default value text field.
Attacker Value
Unknown

CVE-2022-43121

Disclosure Date: November 09, 2022 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in the CMS Field Add page of Intelliants Subrion CMS v4.2.1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the tooltip text field.
Attacker Value
Unknown

CVE-2020-36608

Disclosure Date: November 02, 2022 (last updated February 24, 2025)
A vulnerability, which was classified as problematic, has been found in Tribal Systems Zenario CMS. Affected by this issue is some unknown functionality of the file admin_organizer.js of the component Error Log Module. The manipulation leads to cross site scripting. The attack may be launched remotely. The name of the patch is dfd0afacb26c3682a847bea7b49ea440b63f3baa. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-212816.
Attacker Value
Unknown

CVE-2022-36957

Disclosure Date: October 19, 2022 (last updated February 24, 2025)
SolarWinds Platform was susceptible to the Deserialization of Untrusted Data. This vulnerability allows a remote adversary with Orion admin-level account access to SolarWinds Web Console to execute arbitrary commands.