CVE List

Id CVE No. Status Description Phase Votes Comments Actions
83940  CVE-2015-6663  Candidate  Cross-site scripting (XSS) vulnerability in the Client form in the Device Inspector page in SAP Afaria 7 allows remote attackers to inject arbitrary web script or HTML via crafted client name data, aka SAP Security Note 2152669.  Assigned (20150824)  None (candidate not yet proposed)    View
18660  CVE-2006-2556  Candidate  Cross-site scripting (XSS) vulnerability in Florian Amrhein NewsPortal before 0.37, and possibly TR Newsportal (TRanx rebuilded), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.  Assigned (20060523)  None (candidate not yet proposed)    View
84196  CVE-2015-6919  Candidate  Cross-site scripting (XSS) vulnerability in the googleSearch (CSE) (com_googlesearch_cse) component 3.0.2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the q parameter to index.php.  Assigned (20150911)  None (candidate not yet proposed)    View
18916  CVE-2006-2812  Candidate  Multiple cross-site scripting (XSS) vulnerabilities in index.php in Dominios Europa PICRATE (aka TAL RateMyPic) 1.0 allow remote attackers to inject arbitrary web script or HTML via a javascript URI in the SRC attribute of an IMG element in the (1) name (aka nick), (2) email, and (3) comment boxes; and via the (4) id parameter.  Assigned (20060605)  None (candidate not yet proposed)    View
84452  CVE-2015-7175  Candidate  The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow."  Assigned (20150916)  None (candidate not yet proposed)    View

Page 18772 of 20943, showing 5 records out of 104715 total, starting on record 93856, ending on 93860

Actions