CVE-2019-20645

CVSS v3 Score
4.2
Medium
CVSS v2 Score
3.5
Low

Vulnerability Description

NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.

CVSS:4.2(Medium)

Certain NETGEAR devices are affected by XSS. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D6100 before 1.0.0.56, D6200 before 1.1.00.24, D6220 before 1.0.0.32, D6400 before 1.0.0.66, D70...

CWE-792017
CVSS:4.2(Medium)

NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.

CWE-792019
CVSS:4.2(Medium)

There is a Cross-Site Scripting(XSS) vulnerability in HUAWEI WS318n product when processing network settings. Due to insufficient validation of user input, a local authenticated attacker could exploit...

CWE-792021
CVSS:4.2(Medium)

Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.4.0.

CWE-792022
CVSS:4.2(Medium)

The PostLists WordPress plugin through 2.0.2 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute, which could lead to Reflected Cross-Site Scripting in old ...

CWE-792024
CVSS:4.2(Medium)

Vulnerability in the RDBMS component of Oracle Database Server. Supported versions that are affected are 19.3-19.22 and 21.3-21.13. Easily exploitable vulnerability allows high privileged attacker hav...

CWE-792024