Show filters
118 Total Results
Displaying 21-30 of 118
Sort by:
Attacker Value
Unknown

CVE-2022-26331

Disclosure Date: August 31, 2022 (last updated February 24, 2025)
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects: Micro Focus ArcSight Logger versions prior to v7.2.2 version and prior versions.
Attacker Value
Unknown

CVE-2022-26330

Disclosure Date: August 31, 2022 (last updated October 08, 2023)
Potential vulnerabilities have been identified in Micro Focus ArcSight Logger. The vulnerabilities could be remotely exploited resulting in Information Disclosure, or Self Cross-Site Scripting (XSS). This issue affects: Micro Focus ArcSight Logger versions prior to v7.2.2 version and prior versions.
Attacker Value
Unknown

CVE-2020-23618

Disclosure Date: May 02, 2022 (last updated February 23, 2025)
A reflected cross site scripting (XSS) vulnerability in Xtend Voice Logger 1.0 allows attackers to execute arbitrary web scripts or HTML, via the path of the error page.
Attacker Value
Unknown

CVE-2022-27237

Disclosure Date: April 21, 2022 (last updated February 23, 2025)
There is a cross-site scripting (XSS) vulnerability in an NI Web Server component installed with several NI products. Depending on the product(s) in use, remediation guidance includes: install SystemLink version 2021 R3 or later, install FlexLogger 2022 Q2 or later, install LabVIEW 2021 SP1, install G Web Development 2022 R1 or later, or install Static Test Software Suite version 1.2 or later.
Attacker Value
Unknown

CVE-2021-24176

Disclosure Date: April 05, 2021 (last updated February 22, 2025)
The JH 404 Logger WordPress plugin through 1.1 doesn't sanitise the referer and path of 404 pages, when they are output in the dashboard, which leads to executing arbitrary JavaScript code in the WordPress dashboard.
Attacker Value
Unknown

CVE-2021-27964

Disclosure Date: March 05, 2021 (last updated February 22, 2025)
SonLogger before 6.4.1 is affected by Unauthenticated Arbitrary File Upload. An attacker can send a POST request to /Config/SaveUploadedHotspotLogoFile without any authentication or session header. There is no check for the file extension or content of the uploaded file.
Attacker Value
Unknown

CVE-2021-27963

Disclosure Date: March 05, 2021 (last updated February 22, 2025)
SonLogger before 6.4.1 is affected by user creation with any user permissions profile (e.g., SuperAdmin). An anonymous user can send a POST request to /User/saveUser without any authentication or session header.
Attacker Value
Unknown

CVE-2021-3378

Disclosure Date: February 01, 2021 (last updated February 22, 2025)
FortiLogger 4.4.2.2 is affected by Arbitrary File Upload by sending a "Content-Type: image/png" header to Config/SaveUploadedHotspotLogoFile and then visiting Assets/temp/hotspot/img/logohotspot.asp.
Attacker Value
Unknown

CVE-2020-11851

Disclosure Date: November 17, 2020 (last updated February 22, 2025)
Arbitrary code execution vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in the execution of arbitrary code.
Attacker Value
Unknown

CVE-2020-11860

Disclosure Date: November 17, 2020 (last updated February 22, 2025)
Cross-Site Scripting vulnerability on Micro Focus ArcSight Logger product, affecting all version prior to 7.1.1. The vulnerability could be remotely exploited resulting in Cross-Site Scripting (XSS)