CVE List

Id CVE No. Status Description Phase Votes Comments Actions
42500  CVE-2009-5065  Candidate  Cross-site scripting (XSS) vulnerability in feedparser.py in Universal Feed Parser (aka feedparser or python-feedparser) before 5.0 allows remote attackers to inject arbitrary web script or HTML via vectors involving nested CDATA stanzas.  Assigned (20110405)  None (candidate not yet proposed)    View
42756  CVE-2010-0172  Candidate  toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the asynchronous Authorization Prompt implementation in Mozilla Firefox 3.6 before 3.6.2 does not properly handle concurrent authorization requests from multiple web sites, which might allow remote web servers to spoof an authorization dialog and capture credentials by demanding HTTP authentication in opportunistic circumstances.  Assigned (20100106)  None (candidate not yet proposed)    View
43012  CVE-2010-0428  Candidate  libspice, as used in QEMU-KVM in the Hypervisor (aka rhev-hypervisor) in Red Hat Enterprise Virtualization (RHEV) 2.2 and qspice 0.3.0, does not properly validate guest QXL driver pointers, which allows guest OS users to cause a denial of service (invalid pointer dereference and guest OS crash) or possibly gain privileges via unspecified vectors.  Assigned (20100127)  None (candidate not yet proposed)    View
43268  CVE-2010-0684  Candidate  Cross-site scripting (XSS) vulnerability in createDestination.action in Apache ActiveMQ before 5.3.1 allows remote authenticated users to inject arbitrary web script or HTML via the JMSDestination parameter in a queue action.  Assigned (20100222)  None (candidate not yet proposed)    View
43524  CVE-2010-0940  Candidate  Cross-site scripting (XSS) vulnerability in guestbook.php in Simple PHP Guestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the action parameter.  Assigned (20100308)  None (candidate not yet proposed)    View

Page 382 of 20943, showing 5 records out of 104715 total, starting on record 1906, ending on 1910

Actions