Nessus 的 CGI abuses : XSS 系列

ID名称严重性
53575Atlassian Confluence 2.x >= 2.7 / 3.x < 3.4.6 多个 XSS
low
53449MediaWiki API XSS
medium
53448MediaWiki 反斜线转义 CSS 注释 XSS
medium
53288MyBB xmlhttp.php “value”参数 XSS
medium
52659IBM Lotus Sametime Server stconf.nsf messageString 参数 XSS
medium
52483CGI 泛型 XSS(持久性,第三次传递)
medium
52054MySQL Eventum forgot_password.php XSS
medium
51998MediaWiki CSS 注释 XSS
medium
51972CGI 泛型 XSS(参数名称)
medium
51955Adobe ColdFusion login.cfm 查询字符串 XSS (APSB11-04)
medium
51876PRTG Network Monitor login.htm errormsg 参数 XSS
medium
51852Moodle 'PHPCOVERAGE_HOME' 参数 XSS
medium
51816Crystal Reports Server InfoView logonAction 参数 XSS
medium
51529CGI 泛型 XSS(持久性,第二次传递)
medium
51438Pligg register.php reg_username 参数 XSS
medium
51425phpMyAdmin error.php BBcode 标记 XSS (PMASA-2010-9)
medium
51370Git gitweb 多个参数 XSS
medium
51143Openfire 管理控制台 login.jsp XSS
medium
51096适用于 WordPress 的 Twitter Feed 源插件“url”参数 XSS
medium
51090MODx login.php“username”参数 XSS
medium
50651WordPress FeedList 插件 'i' 参数 XSS
medium
50512适用于 WordPress 的 cformsII 插件的“rs”参数 XSS
medium
50495YUI charts.swf / swfstore.swf / uploader.swf XSS
medium
50450Atlassian FishEye Code Metrics Report 插件 XSS
medium
49999MS10-072:SafeHTML 的漏洞可导致信息泄露 (2412048)(远程检查)
medium
49792MantisBT nusoap/nusoap.php NuSOAP WSDL XSS
medium
49776Nagios XI < 2009R1.3C grab_request_var() 多种 XSS
medium
49775Nagios XI < 2009R1.3B 多个不明 XSS
medium
49709SurgeMail surgeweb XSS
medium
49706TikiWiki 'tiki-edit_wiki_section.php' type 参数 XSS
medium
49699Mura CMS link 参数 XSS
medium
49696Atmail WebMail < 6.2.0 (6.20)“MailType”参数 XSS
medium
49142phpMyAdmin setup.php Verbose Server Name XSS (PMASA-2010-7)
medium
49119Horde util/icon_browser.php subdir 参数 XSS
medium
49067CGI 通用 HTML 注入(快速测试)
medium
48352FuseTalk usersearchresults.cfm keyword 参数 XSS
medium
48351FuseTalk categories.aspx FTVAR_SORTORDER 参数 XSS
medium
48339Oracle BPM Process Administrator tips.jsp context 参数 XSS
medium
47902MediaWiki profileinfo.php 'filter' 参数 XSS
low
47897VMware vCenter Update Manager XSS
medium
47833Nessus Web 服务器 XSS
medium
47831CGI Generic XSS(全面测试)
medium
47766Pligg search.php search 参数 XSS
medium
47746FireStats window-add-excluded-ip.php“edit”参数 XSS
medium
47715Apache Tomcat 4.1 XSS
medium
47708Apache Tomcat JSP2 示例 XSS
medium
47698Wing FTP Server < 3.5.1 XSS
low
47696Apache Tomcat 隐式对象 XSS
medium
47620Splunk 4.x < 4.1.3 404 响应 XSS
medium
47580Microsoft SharePoint Services Help.aspx “cid0”参数 XSS
medium