NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
10532  CVE-2011-3978  Multiple cross-site scripting (XSS) vulnerabilities in LightNEasy.php in LightNEasy 3.2.4 allow remote authenticated users to inject arbitrary web script or HTML via the (1) commentemail, (2) commentmessage, or (3) commentname parameter in a sendcomment action for the news page.    3.5  Low  2017-01-07  2012-02-13  View
76068  CVE-1999-1418  ICQ99 ICQ web server build 1701 with "Active Homepage" enabled generates allows remote attackers to determine the existence of files on the server by comparing server responses when a file exists ("404 Forbidden") versus when a file does not exist ("404 not found").    Medium  2017-01-05  2008-09-05  View
10788  CVE-2011-4320  The mod_pubsub module (mod_pubsub.erl) in ejabberd 2.1.8 and 3.0.0-alpha-3 allows remote authenticated users to cause a denial of service (infinite loop) via a stanza with a publish tag that lacks a node attribute.    Medium  2017-01-07  2012-02-29  View
76324  CVE-2000-0081  Hotmail does not properly filter JavaScript code from a user"s mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. jAvascript.    10  High  2017-01-05  2008-09-05  View
11044  CVE-2011-4691  Google Chrome 15.0.874.121 and earlier does not prevent capture of data about the times of Same Origin Policy violations during IFRAME loading attempts, which makes it easier for remote attackers to determine whether a document exists in the browser cache via crafted JavaScript code.    Medium  2017-01-07  2012-01-26  View

Page 2459 of 17672, showing 5 records out of 88360 total, starting on record 12291, ending on 12295

Actions