NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 10532 | CVE-2011-3978 | Multiple cross-site scripting (XSS) vulnerabilities in LightNEasy.php in LightNEasy 3.2.4 allow remote authenticated users to inject arbitrary web script or HTML via the (1) commentemail, (2) commentmessage, or (3) commentname parameter in a sendcomment action for the news page. | 2 | 3.5 | Low | 2017-01-07 | 2012-02-13 | View | |
| 76068 | CVE-1999-1418 | ICQ99 ICQ web server build 1701 with "Active Homepage" enabled generates allows remote attackers to determine the existence of files on the server by comparing server responses when a file exists ("404 Forbidden") versus when a file does not exist ("404 not found"). | 2 | 5 | Medium | 2017-01-05 | 2008-09-05 | View | |
| 10788 | CVE-2011-4320 | The mod_pubsub module (mod_pubsub.erl) in ejabberd 2.1.8 and 3.0.0-alpha-3 allows remote authenticated users to cause a denial of service (infinite loop) via a stanza with a publish tag that lacks a node attribute. | 2 | 4 | Medium | 2017-01-07 | 2012-02-29 | View | |
| 76324 | CVE-2000-0081 | Hotmail does not properly filter JavaScript code from a user"s mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. jAvascript. | 2 | 10 | High | 2017-01-05 | 2008-09-05 | View | |
| 11044 | CVE-2011-4691 | Google Chrome 15.0.874.121 and earlier does not prevent capture of data about the times of Same Origin Policy violations during IFRAME loading attempts, which makes it easier for remote attackers to determine whether a document exists in the browser cache via crafted JavaScript code. | 2 | 5 | Medium | 2017-01-07 | 2012-01-26 | View |
Page 2459 of 17672, showing 5 records out of 88360 total, starting on record 12291, ending on 12295