CVE List
Id | CVE No. | Status | Description | Phase | Votes | Comments | Actions |
---|---|---|---|---|---|---|---|
83940 | CVE-2015-6663 | Candidate | Cross-site scripting (XSS) vulnerability in the Client form in the Device Inspector page in SAP Afaria 7 allows remote attackers to inject arbitrary web script or HTML via crafted client name data, aka SAP Security Note 2152669. | Assigned (20150824) | None (candidate not yet proposed) | View | |
18660 | CVE-2006-2556 | Candidate | Cross-site scripting (XSS) vulnerability in Florian Amrhein NewsPortal before 0.37, and possibly TR Newsportal (TRanx rebuilded), allows remote attackers to inject arbitrary web script or HTML via unknown vectors. | Assigned (20060523) | None (candidate not yet proposed) | View | |
84196 | CVE-2015-6919 | Candidate | Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the q parameter to index.php. | Assigned (20150911) | None (candidate not yet proposed) | View | |
18916 | CVE-2006-2812 | Candidate | Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dominios Europa PICRATE (aka TAL RateMyPic) 1.0 allow remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element in the (1) name (aka nick), (2) email, and (3) comment boxes; and via the (4) id parameter. | Assigned (20060605) | None (candidate not yet proposed) | View | |
84452 | CVE-2015-7175 | Candidate | The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow." | Assigned (20150916) | None (candidate not yet proposed) | View |
Page 18772 of 20943, showing 5 records out of 104715 total, starting on record 93856, ending on 93860