Known Vulnerabilities for products from Jeesns
Listed below are 20 of the newest known vulnerabilities associated with the vendor "Jeesns".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-38550 json | A stored cross-site scripting (XSS) vulnerability in the /weibo/list component of Jeesns v2.0.0 allows attackers to execute a... | 5.4 - MEDIUM | 2022-09-19 | 2022-09-22 |
| CVE-2020-19295 json | A reflected cross-site scripting (XSS) vulnerability in the /weibo/topic component of Jeesns 1.4.2 allows attackers to execut... | 6.1 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19294 json | A stored cross-site scripting (XSS) vulnerability in the /article/comment component of Jeesns 1.4.2 allows attackers to execu... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19293 json | A stored cross-site scripting (XSS) vulnerability in the /article/add component of Jeesns 1.4.2 allows attackers to execute a... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19292 json | A stored cross-site scripting (XSS) vulnerability in the /question/ask component of Jeesns 1.4.2 allows attackers to execute ... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19291 json | A stored cross-site scripting (XSS) vulnerability in the /weibo/publishdata component of Jeesns 1.4.2 allows attackers to exe... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19290 json | A stored cross-site scripting (XSS) vulnerability in the /weibo/comment component of Jeesns 1.4.2 allows attackers to execute... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19289 json | A stored cross-site scripting (XSS) vulnerability in the /member/picture/album component of Jeesns 1.4.2 allows attackers to ... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19288 json | A stored cross-site scripting (XSS) vulnerability in the /localhost/u component of Jeesns 1.4.2 allows attackers to execute a... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19287 json | A stored cross-site scripting (XSS) vulnerability in the /group/post component of Jeesns 1.4.2 allows attackers to execute ar... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19286 json | A stored cross-site scripting (XSS) vulnerability in the /question/detail component of Jeesns 1.4.2 allows attackers to execu... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19285 json | A stored cross-site scripting (XSS) vulnerability in the /group/apply component of Jeesns 1.4.2 allows attackers to execute a... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19284 json | A stored cross-site scripting (XSS) vulnerability in the /group/comment component of Jeesns 1.4.2 allows attackers to execute... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19283 json | A reflected cross-site scripting (XSS) vulnerability in the /newVersion component of Jeesns 1.4.2 allows attackers to execute... | 6.1 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19282 json | A reflected cross-site scripting (XSS) vulnerability in Jeesns 1.4.2 allows attackers to execute arbitrary web scripts or HTM... | 6.1 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19281 json | A stored cross-site scripting (XSS) vulnerability in the /manage/loginusername component of Jeesns 1.4.2 allows attackers to ... | 5.4 - MEDIUM | 2021-09-09 | 2021-09-13 |
| CVE-2020-19280 json | Jeesns 1.4.2 contains a cross-site request forgery (CSRF) which allows attackers to escalate privileges and perform sensitive... | 8.8 - HIGH | 2021-09-09 | 2021-09-22 |
| CVE-2020-18035 json | Cross Site Scripting (XSS) in Jeesns v1.4.2 allows remote attackers to execute arbitrary code by injecting commands into the ... | 6.1 - MEDIUM | 2021-04-29 | 2021-05-03 |
| CVE-2018-19178 json | In JEESNS 1.3, com/lxinet/jeesns/core/utils/XssHttpServletRequestWrapper.java allows stored XSS via an HTML EMBED element, a ... | 5.4 - MEDIUM | 2018-11-11 | 2018-12-13 |
| CVE-2018-17886 json | An issue was discovered in JEESNS 1.3. The XSS filter in com.lxinet.jeesns.core.utils.XssHttpServletRequestWrapper.java could... | 5.4 - MEDIUM | 2018-10-02 | 2018-11-16 |
Known software with vulnerabilities from Jeesns
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Jeesns | Jeesns | 1.2.1 |