Nessus 的 CGI abuses : XSS 系列

ID名称严重性
65982MantisBT 1.2.x < 1.2.14 adm_config_report.php 多参数 XSS
low
65984Cerb 多种漏洞
medium
65738McAfee Vulnerability Manager cert_cn 参数 XSS
medium
65720CKEditor sample_posteddata.php XSS
medium
65616PHP-Fusion forum/viewthread.php highlight 参数 XSS
medium
65030LogAnalyzer asktheoracle.php“query”参数 XSS
medium
64931MoinMoin rsslink() 函数 page_name 参数 XSS
medium
64877Bugzilla show_bug.cgi id 参数 XSS
medium
64490MantisBT search.php match_type 参数 XSS
medium
64486LogAnalyzer userchange.php“viewid”参数 XSS
medium
64484用于 Joomla! 的 Incapsula 组件“token”参数多个 XSS
medium
64438Joomla! 2.5.x < 2.5.7 多种 XSS
medium
63694ManageEngine AssetExplorer < 5.6.0 Build 5614 XML 资产数据 XSS
low
63639Horde IMP js/compose-dimp.js XSS
medium
63523HP LaserJet XSS 漏洞
medium
63476Dell OpenManage Server Administrator index_main.htm 基于 DOM 的 XSS
medium
63302Slideshow Plugin for WordPress“settings.php”多个参数 XSS
medium
63073Zenphoto Verisign_logon.php 重定向参数 XSS
medium
63064WordPress 的 Wordfence 插件的“email”参数 XSS
medium
62974Dell OpenManage Server Administrator omalogin.html 基于 DOM 的 XSS
medium
62813Symphony 密码找回脚本 XSS
medium
62785ManageEngine SupportCenter Plus HomePage.do fromCustomer 参数 XSS
medium
62784ManageEngine OpStor availability730.do days 参数 XSS
medium
62736WANem index-advanced.php XSS
medium
62663phpMyAdmin 3.5.x < 3.5.3 多种漏洞 (PMASA-2012-6 - PMASA-2012-7)
medium
62385Poweradmin index.php XSS
medium
62368MediaWiki index.php“uselang”参数 XSS
medium
62356Atlassian Confluence VelocityServlet 错误页面 XSS
medium
62125MDaemon WorldClient < 12.5.7 多种 XSS 漏洞
medium
62124LogAnalyzer index.php“highlight”参数 XSS
medium
62123LogAnalyzer index.php 'filter' 参数 XSS
medium
62030SquidClamav clwarn.cgi url 参数 XSS
medium
61659phpMyAdmin 3.4.x < 3.4.11.1 / 3.5.x < 3.5.2.2 多个 XSS (PMASA-2012-4)
low
61649Scrutinizer < 9.5.2 exporters.php XSS
medium
61449Horde Kronolith js/kronolith.js 多种视图 XSS
medium
61430Nagios XI < 2011R1.9 login.php XSS
medium
60099Nagios XI < 2011R3.0 多种 XSS 漏洞
medium
60096Apache Struts 2 struts2-showcase edit-person.action 持久性 XSS
medium
60095Apache Struts 2 struts2-rest-showcase orders“clientName”参数持久性 XSS
medium
60094Apache Struts struts-examples upload-submit.do“theText”参数 XSS
medium
60093Apache Struts struts-cookbook processSimple.do message 参数 XSS
medium
60047Novell GroupWise WebAccess User.interface XSS
medium
59656Elgg index.php view 参数 XSS
medium
59569MailEnable ForgottenPassword.aspx Username 参数 XSS
medium
59387WordPress 的 Pretty Link 插件“pretty-bar.php”“url”参数 XSS
medium
59360Liferay Portal upload_progress_poller.jsp XSS
medium
59311WordPress 的 Sharebar 插件“sharebar-admin.php”“status”参数 XSS
medium
59248Apache OFBiz Webslinger 组件 XSS
medium
59171phpMyAdmin 复制设置 js/replication.js 数据库名称 XSS
medium
59111McAfee WebShield UI Dashboard XSS (SB10026)
medium