Vendor
Crea8social
Products
1
CVEs
5
Across products
5
Status
Private
Products
1- 5 CVEs
Recent CVEs
5| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2018-9123 | Med | 0.35 | 5.4 | 0.01 | Mar 29, 2018 | In Crea8social 2018.2, there is Stored Cross-Site Scripting via a User Profile. | ||
| CVE-2018-9122 | Med | 0.35 | 5.4 | 0.01 | Mar 29, 2018 | In Crea8social 2018.2, there is Reflected Cross-Site Scripting via the term parameter to the /search URI. | ||
| CVE-2018-9121 | Med | 0.35 | 5.4 | 0.01 | Mar 29, 2018 | In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post comment. | ||
| CVE-2018-9120 | Med | 0.35 | 5.4 | 0.01 | Mar 29, 2018 | In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post. | ||
| CVE-2015-1054 | 0.03 | — | 0.03 | Jan 16, 2015 | Cross-site scripting (XSS) vulnerability in the Games feature in Crea8Social 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the Game Content field in Add Game. |
- risk 0.35cvss 5.4epss 0.01
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a User Profile.
- risk 0.35cvss 5.4epss 0.01
In Crea8social 2018.2, there is Reflected Cross-Site Scripting via the term parameter to the /search URI.
- risk 0.35cvss 5.4epss 0.01
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post comment.
- risk 0.35cvss 5.4epss 0.01
In Crea8social 2018.2, there is Stored Cross-Site Scripting via a post.
- CVE-2015-1054Jan 16, 2015risk 0.03cvss —epss 0.03
Cross-site scripting (XSS) vulnerability in the Games feature in Crea8Social 2.0 allows remote authenticated users to inject arbitrary web script or HTML via the Game Content field in Add Game.