NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
9155 | CVE-2011-2363 | Use-after-free vulnerability in the nsSVGPointList::AppendElement function in the implementation of SVG element lists in Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a user-supplied callback. | 2 | 10 | High | 2017-01-07 | 2012-01-26 | View | |
9154 | CVE-2011-2362 | Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 do not distinguish between cookies for two domain names that differ only in a trailing dot, which allows remote web servers to bypass the Same Origin Policy via Set-Cookie headers. | 2 | 5 | Medium | 2017-01-07 | 2012-01-26 | View | |
9153 | CVE-2011-2361 | The Basic Authentication dialog implementation in Google Chrome before 13.0.782.107 does not properly handle strings, which might make it easier for remote attackers to capture credentials via a crafted web site. | 2 | 4.3 | Medium | 2017-01-07 | 2012-01-26 | View | |
9152 | CVE-2011-2360 | Google Chrome before 13.0.782.107 does not ensure that the user is prompted before download of a dangerous file, which makes it easier for remote attackers to bypass intended content restrictions via a crafted web site. | 2 | 5 | Medium | 2017-01-07 | 2012-01-26 | View | |
9151 | CVE-2011-2359 | Google Chrome before 13.0.782.107 does not properly track line boxes during rendering, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that lead to a "stale pointer." | 2 | 7.5 | High | 2017-01-07 | 2012-01-26 | View |
Page 15842 of 17672, showing 5 records out of 88360 total, starting on record 79206, ending on 79210