Nessus 的 CGI abuses : XSS 系列

ID名稱嚴重性
46199Ektron CMS400.NET「workarea/reterror.aspx」info 參數 XSS
medium
46193CGI 泛型 XSS (HTTP 標頭)
low
46183MODx SearchHighlight 外掛程式 XSS
medium
45578Atlassian JIRA 500page.jsp Referer XSS
medium
45414VMware ESX WebAccess Context Data XSS (VMSA-2010-0005)
medium
45406ViewVC viewvc.cgi search 參數 XSS
low
45122DNN (DotNetNuke) < 5.3.0 SearchResults.aspx XSS
medium
45059IBM 多個產品 login.php 查詢字串 XSS
medium
44343SAP BusinessObjects viewError.jsp「error」參數 XSS
medium
44332SilverStripe Forums 模組 'Search' 參數 XSS
medium
44320Mort Bay Jetty 多個 XSS
medium
43403daloRADIUS login.php 錯誤參數 XSS
medium
43400ClarkConnect proxy.php url 參數 XSS
medium
43101TestLink login.php req 參數 XSS
medium
43099e107 submitnews.php XSS
medium
42979DNN (DotNetNuke) < 5.2.0 SearchResults.aspx XSS
medium
42964GForge help/tracker.php helpname 參數 XSS
medium
42797Jetty CookieDump.java 範例應用程式持續式 XSS
medium
42475Axon 虛擬 PBX /logon 多個參數 XSS
medium
42435XOOPS misc.php 查詢字串 XSS
medium
42425CGI 泛型 XSS (持續式)
medium
42348ViewVC 無效參數任意 HTML 插入
medium
42346BuildBot WebStatus 「branch」參數 XSS
medium
42340Adobe ColdFusion <= 8.0.1 _logintowizard.cfm XSS
medium
42352PeopleSoft PeopleTools JMS 接聽連接器 Activity 參數 XSS
medium
42264BASE < 1.4.4 base_local_rules.php dir 參數 XSS
medium
42191IBM Rational RequisitePro ReqWebHelp 多個 XSS
medium
42083Symantec SecurityExpressions Audit and Compliance Server 多個 XSS
medium
41625Lyris ListManager 多個 XSS
medium
41607Ektron CMS400.NET id 參數 XSS
medium
40985Orion 應用程式伺服器 Web 範例 多個 XSS
medium
406133CX Phone System login.php 多個參數 XSS
medium
40550Oracle Database Secure Enterprise Search search/query/search_p_groups 參數 XSS
medium
40493TinyBrowser 多個 XSS
medium
40418CommuniGate Pro WebMail < 5.2.15 XSS
medium
39591IBM Rational ClearQuest 多個 XSS 瑕疵
medium
39590Sun Java Web Console helpwindow.jsp / masthead.jsp 多個 XSS
medium
39538Movable Type mt-wizard.cgi set_static_uri_to 參數 XSS
medium
39466CGI 泛型 XSS (快速測試)
medium
39354Kerio MailServer < 6.6.2 修補程式 3 / 6.7.0 Patch 1 XSS (KSEC-2009-06-08-01)
medium
39331Joomla! < 1.5.11 JA_Purity 範本多個 XSS
medium
38928DNN (DotNetNuke) ErrorPage.aspx XSS
medium
38927Novell GroupWise WebAccess 登入頁面 User.lang 參數 XSS
medium
38913Sun Java System Calendar Server login.wcap Fmt-out 參數 XSS
medium
38911AXIGEN Webmail < 7.1.0 HTML 內文指令碼插入
medium
38793SquirrelMail contrib/decrypt_headers.php XSS
medium
38733Project Woodstock 404 錯誤頁面 UTF-7 編碼的 XSS
medium
38650Atmail WebMail <= 5.6.1 (5.61) webadmin/admin.php 多個參數 XSS
medium
38649Atmail WebMail <= 5.6.0 (5.60) 電子郵件內文插入
medium
38208Apache Struts 2 s: a / s: url 標籤 href 元素 XSS
low