Vulnerabilities (CVE)

Filtered by vendor Dynpg Subscribe
Filtered by product Dynpg
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-27406 1 Dynpg 1 Dynpg 2021-11-03 3.5 LOW 5.4 MEDIUM
Cross Site Scripting (XSS) vulnerability in DynPG 4.9.1, allows authenticated attackers to execute arbitrary code via the groupname.
CVE-2021-27530 1 Dynpg 1 Dynpg 2021-03-25 3.5 LOW 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allow remote attacker to inject javascript via URI in /index.php.
CVE-2021-27528 1 Dynpg 1 Dynpg 2021-03-25 3.5 LOW 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "refID" parameter.
CVE-2021-27531 1 Dynpg 1 Dynpg 2021-03-25 3.5 LOW 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "query" parameter.
CVE-2021-27529 1 Dynpg 1 Dynpg 2021-03-25 3.5 LOW 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "limit" parameter.
CVE-2021-27527 1 Dynpg 1 Dynpg 2021-03-25 3.5 LOW 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "valueID" parameter.
CVE-2021-27526 1 Dynpg 1 Dynpg 2021-03-25 3.5 LOW 4.8 MEDIUM
A cross-site scripting (XSS) vulnerability in DynPG version 4.9.2 allows remote attackers to inject JavaScript via the "page" parameter.