NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
30213  CVE-2014-1590  The XMLHttpRequest.prototype.send method in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allows remote attackers to cause a denial of service (application crash) via a crafted JavaScript object.    4.3  Medium  2017-01-19  2016-12-23  View
46736  CVE-2012-5624  The XMLHttpRequest object in Qt before 4.8.4 enables http redirection to the file scheme, which allows man-in-the-middle attackers to force the read of arbitrary local files and possibly obtain sensitive information via a file: URL to a QML application.    4.3  Medium  2017-01-19  2013-02-26  View
67213  CVE-2005-1475  The XMLHttpRequest object in Opera 8.0 Final Build 1095 allows remote attackers to bypass access restrictions and perform unauthorized actions on other domains via a redirect.    7.5  High  2017-01-03  2008-09-05  View
70463  CVE-2005-4874  The XMLHttpRequest object in Mozilla 1.7.8 supports the HTTP TRACE method, which allows remote attackers to obtain (1) proxy authentication passwords via a request with a "Max-Forwards: 0" header or (2) arbitrary local passwords on the web server that hosts this object.    4.3  Medium  2017-01-03  2008-09-05  View
79364  CVE-2002-0354  The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the browser to the file on the client, then reading the result using the responseText property.    Medium  2017-01-05  2016-10-17  View

Page 2592 of 17672, showing 5 records out of 88360 total, starting on record 12956, ending on 12960

Actions