CVE List

Id CVE No. Status Description Phase Votes Comments Actions
78563  CVE-2015-1286  Candidate  Cross-site scripting (XSS) vulnerability in the V8ContextNativeHandler::GetModuleSystem function in extensions/renderer/v8_context_native_handler.cc in Google Chrome before 44.0.2403.89 allows remote attackers to inject arbitrary web script or HTML by leveraging the lack of a certain V8 context restriction, aka a Blink "Universal XSS (UXSS)."  Assigned (20150121)  None (candidate not yet proposed)    View
13283  CVE-2005-2077  Candidate  Cross-site scripting (XSS) vulnerability in error.asp for Hosting Controller allows remote attackers to inject arbitrary web script or HTML via the error parameter.  Assigned (20050629)  None (candidate not yet proposed)    View
78819  CVE-2015-1542  Candidate  ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.  Assigned (20150206)  None (candidate not yet proposed)    View
13539  CVE-2005-2333  Candidate  Cross-site scripting (XSS) vulnerability in smilies_popup.php in SEO-Board 1.0 allows remote attackers to inject arbitrary web script or HTML via the doc parameter.  Assigned (20050720)  None (candidate not yet proposed)    View
79075  CVE-2015-1798  Candidate  The symmetric-key feature in the receive function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p2 requires a correct MAC only if the MAC field has a nonzero length, which makes it easier for man-in-the-middle attackers to spoof packets by omitting the MAC.  Assigned (20150217)  None (candidate not yet proposed)    View

Page 18637 of 20943, showing 5 records out of 104715 total, starting on record 93181, ending on 93185

Actions