NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
60437 | CVE-2006-1732 | Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to bypass same-origin protections and conduct cross-site scripting (XSS) attacks via unspecified vectors involving the window.controllers array. | 2 | 4.3 | Medium | 2016-12-20 | 2013-07-15 | View | |
60693 | CVE-2006-1988 | The WebTextRenderer(WebInternal) _CG_drawRun:style:geometry: function in Apple Safari 2.0.3 allows remote attackers to cause a denial of service (application crash) via an HTML LI tag with a large VALUE attribute (list item number), which triggers a null dereference in QPainter::drawText, probably due to a failed memory allocation that uses the VALUE. | 2 | 5 | Medium | 2016-12-20 | 2011-03-07 | View | |
60949 | CVE-2006-2246 | Cross-site scripting (XSS) vulnerability in UBlog 1.6 Access Edition allows remote attackers to inject arbitrary web script or HTML via text fields when adding a blog entry. | 2 | 5.8 | Medium | 2016-12-20 | 2011-03-07 | View | |
61205 | CVE-2006-2510 | Cross-site scripting (XSS) vulnerability in the URL submission form in YourFreeWorld.com Short Url & Url Tracker Script allows remote attackers to inject arbitrary web script or HTML via an unspecified form for submitting URLs. | 2 | 6.8 | Medium | 2016-12-20 | 2008-09-05 | View | |
61461 | CVE-2006-2776 | Certain privileged UI code in Mozilla Firefox and Thunderbird before 1.5.0.4 calls content-defined setters on an object prototype, which allows remote attackers to execute code at a higher privilege than intended. | 2 | 7.5 | High | 2016-12-20 | 2011-03-07 | View |
Page 119 of 17672, showing 5 records out of 88360 total, starting on record 591, ending on 595