CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
78563 | CVE-2015-1286 | Candidate | Cross-site scripting (XSS) vulnerability in the V8ContextNativeHandler::GetModuleSystem function in extensions/renderer/v8_context_native_handler.cc in Google Chrome before 44.0.2403.89 allows remote attackers to inject arbitrary web script or HTML by leveraging the lack of a certain V8 context restriction, aka a Blink "Universal XSS (UXSS)." | Assigned (20150121) | None (candidate not yet proposed) | View | |
13283 | CVE-2005-2077 | Candidate | Cross-site scripting (XSS) vulnerability in error.asp for Hosting Controller allows remote attackers to inject arbitrary web script or HTML via the error parameter. | Assigned (20050629) | None (candidate not yet proposed) | View | |
78819 | CVE-2015-1542 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20150206) | None (candidate not yet proposed) | View | |
13539 | CVE-2005-2333 | Candidate | Cross-site scripting (XSS) vulnerability in smilies_popup.php in SEO-Board 1.0 allows remote attackers to inject arbitrary web script or HTML via the doc parameter. | Assigned (20050720) | None (candidate not yet proposed) | View | |
79075 | CVE-2015-1798 | Candidate | The symmetric-key feature in the receive function in ntp_proto.c in ntpd in NTP 4.x before 4.2.8p2 requires a correct MAC only if the MAC field has a nonzero length, which makes it easier for man-in-the-middle attackers to spoof packets by omitting the MAC. | Assigned (20150217) | None (candidate not yet proposed) | View |
Page 18637 of 20943, showing 5 records out of 104715 total, starting on record 93181, ending on 93185