Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In September 2021
A stored cross-site scripting (XSS) vulnerability in the /group/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the group comments text field.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /group/apply component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the Name text field.
CVSS Score
5.4
EPSS Score
0.003
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /question/detail component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the source field of the editor.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /group/post component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the title.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in a private message.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the new album tab.
CVSS Score
5.4
EPSS Score
0.003
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in the Weibo comment section.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in a posted Weibo.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /question/ask component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in a posted question.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09
A stored cross-site scripting (XSS) vulnerability in the /article/add component of Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload in a posted article.
CVSS Score
5.4
EPSS Score
0.002
Published
2021-09-09


Contact Us

Shodan ® - All rights reserved