CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
4662 | CVE-2002-0270 | Candidate | Opera, when configured with the "Determine action by MIME type" option disabled, interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks. | Proposed (20020502) | MODIFY(1) Frech | NOOP(5) Christey, Cole, Cox, Foat, Wall | REJECT(1) Armstrong | Frech> XF:ie-opera-contenttype-css(8218) | Christey> BID:4098 | URL:http://www.securityfocus.com/bid/4098 | View |
4634 | CVE-2002-0242 | Candidate | Cross-site scripting vulnerability in Internet Explorer 6 earlier allows remote attackers to execute arbitrary script via an Extended HTML Form, whose output from the remote server is not properly cleansed. | Proposed (20020502) | ACCEPT(1) Cole | MODIFY(1) Frech | NOOP(3) Armstrong, Cox, Foat | REVIEWING(1) Wall | Frech> XF:ie-opera-contenttype-css(8218) | View |
4635 | CVE-2002-0243 | Candidate | Cross-site scripting vulnerability in Opera 6.0 and earlier allows remote attackers to execute arbitrary script via an Extended HTML Form, whose output from the remote server is not properly cleansed. | Proposed (20020502) | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Cox, Foat | REVIEWING(1) Wall | Frech> XF:ie-opera-contenttype-css(8218) | View |
4661 | CVE-2002-0269 | Candidate | Internet Explorer 5.x and 6 interprets an object as an HTML document even when its MIME Content-Type is text/plain, which could allow remote attackers to execute arbitrary script in documents that the user does not expect, possibly through web applications that use a text/plain type to prevent cross-site scripting attacks. | Proposed (20020502) | MODIFY(1) Frech | NOOP(4) Armstrong, Cole, Cox, Foat | REVIEWING(1) Wall | Frech> XF:ie-opera-contenttype-css(8218) | View |
1606 | CVE-2000-0028 | Candidate | Internet Explorer 5.0 and 5.01 allows remote attackers to bypass the cross frame security policy and read files via the external.NavigateAndFind function. | Modified (20000626-01) | ACCEPT(2) Armstrong, Stracener | MODIFY(2) Frech, Levy | NOOP(1) Baker | RECAST(1) LeBlanc | REVIEWING(1) Christey | Frech> XF:ie-navigateandfind | Christey> May be a duplicate of CVE-2000-0465 according to my | communications with Microsoft people. CVE-2000-0266 may | also be a variant. | Levy> BID 887 | LeBlanc> duplicate | View |
Page 156 of 20943, showing 5 records out of 104715 total, starting on record 776, ending on 780