CVE-2024-56998

CVSS v3 Score
4.2
Medium

Vulnerability Description

PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) in /edit-profile.php via the parameter $address.

CVSS:4.2(Medium)

Certain NETGEAR devices are affected by XSS. This affects D3600 before 1.0.0.67, D6000 before 1.0.0.67, D6100 before 1.0.0.56, D6200 before 1.1.00.24, D6220 before 1.0.0.32, D6400 before 1.0.0.66, D70...

CWE-792017
CVSS:4.2(Medium)

NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.

CWE-792019
CVSS:4.2(Medium)

NETGEAR RAX40 devices before 1.0.3.62 are affected by stored XSS.

CWE-792019
CVSS:4.2(Medium)

There is a Cross-Site Scripting(XSS) vulnerability in HUAWEI WS318n product when processing network settings. Due to insufficient validation of user input, a local authenticated attacker could exploit...

CWE-792021
CVSS:4.2(Medium)

Cross-site Scripting (XSS) - Stored in GitHub repository pimcore/pimcore prior to 10.4.0.

CWE-792022
CVSS:4.2(Medium)

The PostLists WordPress plugin through 2.0.2 does not escape the $_SERVER['REQUEST_URI'] parameter before outputting it back in an attribute, which could lead to Reflected Cross-Site Scripting in old ...

CWE-792024