8.218.20.42

Regular View Raw Data
Last Seen: 2024-04-28
Tags:
cloud

GeneralInformation

Hostnames thebazaar.com.hk
www.thebazaar.com.hk
Domains thebazaar.com.hk 
Cloud Provider Alibaba Cloud
Country Hong Kong
City Hong Kong
Organization Alibaba Cloud (Singapore) Private Limited
ISP Alibaba (US) Technology Co., Ltd.
ASN AS45102

WebTechnologies

Font scripts
JavaScript libraries
Miscellaneous
Security
Tag managers
UI frameworks

Vulnerabilities

Note: the device may not be impacted by all of these issues. The vulnerabilities are implied based on the software and version.

CVE-2020-23064 Cross Site Scripting vulnerability in jQuery 2.2.0 through 3.x before 3.5.0 allows a remote attacker to execute arbitrary code via the <options> element.
CVE-2020-11023 4.3In jQuery versions greater than or equal to 1.0.3 and before 3.5.0, passing HTML containing <option> elements from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
CVE-2020-11022 4.3In jQuery versions greater than or equal to 1.2 and before 3.5.0, passing HTML from untrusted sources - even after sanitizing it - to one of jQuery's DOM manipulation methods (i.e. .html(), .append(), and others) may execute untrusted code. This problem is patched in jQuery 3.5.0.
CVE-2019-8331 4.3In Bootstrap before 3.4.1 and 4.3.x before 4.3.1, XSS is possible in the tooltip or popover data-template attribute.
CVE-2019-11358 4.3jQuery before 3.4.0, as used in Drupal, Backdrop CMS, and other products, mishandles jQuery.extend(true, {}, ...) because of Object.prototype pollution. If an unsanitized source object contained an enumerable __proto__ property, it could extend the native Object.prototype.

OpenPorts

-1005990683 | 2024-04-27T01:05:11.248517
  
80 / tcp
-1887932804 | 2024-04-28T06:33:45.385505
  
443 / tcp



Contact Us

Shodan ® - All rights reserved