Skip to main content

Over 150 LLM Providers · Over 5,300 Models The most extensible AI-powered pentesting platform. Open source. Star on GitHub

2,286 of 6,449 · Page 16/46
6.1
CVE-2016-5721

Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration before 8.7.0 allow remote attackers to injec

6.1
CVE-2016-0293

Cross-site scripting (XSS) vulnerability in IBM BigFix Platform (formerly Tivoli Endpoint Manager) 9.x before 9.1.8 and

6.1
CVE-2016-1471

Cross-site scripting (XSS) vulnerability in the web-based management interface on Cisco Small Business 220 devices with

6.1
CVE-2016-4848

Cross-site scripting (XSS) vulnerability in ClipBucket before 2.8.1 RC2 allows remote attackers to inject arbitrary web

6.1
CVE-2016-4851

Cross-site scripting (XSS) vulnerability in Let's PHP! simple chat before 2016-08-15 allows remote attackers to inject a

6.1
CVE-2016-5699

CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) befo

6.1
CVE-2015-5720

Multiple cross-site scripting (XSS) vulnerabilities in the template-creation feature in Malware Information Sharing Plat

6.1
CVE-2016-7033

Multiple cross-site scripting (XSS) vulnerabilities in the admin pages in dashbuilder in Red Hat JBoss BPM Suite 6.3.2 a

6.1
CVE-2016-6316

Cross-site scripting (XSS) vulnerability in Action View in Ruby on Rails 3.x before 3.2.22.3, 4.x before 4.2.7.1, and 5.

6.1
CVE-2016-6839

CRLF injection vulnerability in Huawei FusionAccess before V100R006C00 allows remote attackers to inject arbitrary HTTP

6.1
CVE-2016-5147

Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux, mishandles def

6.1
CVE-2016-5148

Cross-site scripting (XSS) vulnerability in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and

6.1
CVE-2016-5164

Cross-site scripting (XSS) vulnerability in WebKit/Source/platform/v8_inspector/V8Debugger.cpp in Blink, as used in Goog

6.1
CVE-2016-5165

Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.27

6.1
CVE-2016-3379

Cross-site scripting (XSS) vulnerability in Microsoft Exchange Server 2016 Cumulative Update 1 and 2 allows remote attac

6.1
CVE-2016-0926

Cross-site scripting (XSS) vulnerability in Apps Manager in Pivotal Cloud Foundry (PCF) Elastic Runtime before 1.6.32 an

6.1
CVE-2016-0927

Cross-site scripting (XSS) vulnerability in Pivotal Cloud Foundry (PCF) Ops Manager before 1.6.17 allows remote attacker

6.1
CVE-2016-6642

Cross-site request forgery (CSRF) vulnerability in EMC ViPR SRM before 3.7.2 allows remote attackers to hijack the authe

6.1
CVE-2016-6643

Cross-site scripting (XSS) vulnerability in EMC ViPR SRM before 3.7.2 allows remote attackers to inject arbitrary web sc

6.1
CVE-2016-6404

Cross-site scripting (XSS) vulnerability in the web framework in Cisco IOx Local Manager in IOS 15.5(2)T and IOS XE allo

6.1
CVE-2016-4969

Cross-site scripting (XSS) vulnerability in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote attackers

6.1
CVE-2016-6158

Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei WS331a routers with software before WS331a-10 V100R

6.1
CVE-2016-4618

Cross-site scripting (XSS) vulnerability in Safari Reader in Apple iOS before 10 and Safari before 10 allows remote atta

6.1
CVE-2016-4993

CRLF injection vulnerability in the Undertow web server in WildFly 10.0.0, as used in Red Hat JBoss Enterprise Applicati

6.1
CVE-2016-6840

Cross-site scripting (XSS) vulnerability in the management interface in Huawei OceanStor ISM before V200R001C04SPC200 al

6.1
CVE-2016-5061

Multiple cross-site scripting (XSS) vulnerabilities in the web server in Aternity before 9.0.1 allow remote attackers to

6.1
CVE-2016-7571

Cross-site scripting (XSS) vulnerability in Drupal 8.x before 8.1.10 allows remote attackers to inject arbitrary web scr

6.1
CVE-2016-6418

Cross-site scripting (XSS) vulnerability in Cisco Videoscape Distribution Suite Service Manager (VDS-SM) 3.0 through 3.4

6.1
CVE-2016-6027

The Configuration Manager in IBM Sterling Secure Proxy (SSP) 3.4.2 before 3.4.2.0 iFix 8 and 3.4.3 before 3.4.3.0 iFix 1

6.1
CVE-2016-6425

Cross-site scripting (XSS) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in Un

6.1
CVE-2016-6436

Cross-site scripting (XSS) vulnerability in HostScan Engine 3.0.08062 through 3.1.14018 in the Cisco Host Scan package,

6.1
CVE-2015-1000004

XSS in filedownload v1.4 wordpress plugin

6.1
CVE-2016-1000114

XSS in huge IT gallery v1.1.5 for Joomla

6.1
CVE-2016-1000007

Pagure 2.2.1 XSS in raw file endpoint

6.1
CVE-2015-8956

The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain

6.1
CVE-2016-5325

CRLF injection vulnerability in the ServerResponse#writeHead function in Node.js 0.10.x before 0.10.47, 0.12.x before 0.

6.1
CVE-2016-1000126

Reflected XSS in wordpress plugin admin-font-editor v1.8

6.1
CVE-2016-1000127

Reflected XSS in wordpress plugin ajax-random-post v2.00

6.1
CVE-2016-1000128

Reflected XSS in wordpress plugin anti-plagiarism v3.60

6.1
CVE-2016-1000129

Reflected XSS in wordpress plugin defa-online-image-protector v3.3

6.1
CVE-2016-1000130

Reflected XSS in wordpress plugin e-search v1.0

6.1
CVE-2016-1000131

Reflected XSS in wordpress plugin e-search v1.0

6.1
CVE-2016-1000132

Reflected XSS in wordpress plugin enhanced-tooltipglossary v3.2.8

6.1
CVE-2016-1000133

Reflected XSS in wordpress plugin forget-about-shortcode-buttons v1.1.1

6.1
CVE-2016-1000134

Reflected XSS in wordpress plugin hdw-tube v1.2

6.1
CVE-2016-1000135

Reflected XSS in wordpress plugin hdw-tube v1.2

6.1
CVE-2016-1000136

Reflected XSS in wordpress plugin heat-trackr v1.0

6.1
CVE-2016-1000137

Reflected XSS in wordpress plugin hero-maps-pro v2.1.0

6.1
CVE-2016-1000138

Reflected XSS in wordpress plugin indexisto v1.0.5

6.1
CVE-2016-1000139

Reflected XSS in wordpress plugin infusionsoft v1.5.11

Scan for 2016 Vulnerabilities

CyberStrike detects these CVEs across your infrastructure automatically.

Get Started