CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
39139 | CVE-2009-1704 | Candidate | CFNetwork in Apple Safari before 4.0 misinterprets downloaded image files as local HTML documents in unspecified circumstances, which allows remote attackers to execute arbitrary JavaScript code by placing it in an image file. | Assigned (20090520) | None (candidate not yet proposed) | View | |
104675 | CVE-2017-7855 | Candidate | ** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided. | Assigned (20170413) | None (candidate not yet proposed) | View | |
39395 | CVE-2009-1960 | Candidate | inc/init.php in DokuWiki 2009-02-14, rc2009-02-06, and rc2009-01-30, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via the config_cascade[main][default][] parameter to doku.php. NOTE: PHP remote file inclusion is also possible in PHP 5 using ftp:// URLs. | Assigned (20090606) | None (candidate not yet proposed) | View | |
39651 | CVE-2009-2216 | Candidate | Cross-site scripting (XSS) vulnerability in CMD_REDIRECT in DirectAdmin 1.33.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the URI in a view=advanced request. | Assigned (20090625) | None (candidate not yet proposed) | View | |
39907 | CVE-2009-2472 | Candidate | Mozilla Firefox before 3.0.12 does not always use XPCCrossOriginWrapper when required during object construction, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted document, related to a "cross origin wrapper bypass." | Assigned (20090715) | None (candidate not yet proposed) | View |
Page 18727 of 20943, showing 5 records out of 104715 total, starting on record 93631, ending on 93635