NVD List
| Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 30213 | CVE-2014-1590 | The XMLHttpRequest.prototype.send method in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allows remote attackers to cause a denial of service (application crash) via a crafted JavaScript object. | 2 | 4.3 | Medium | 2017-01-19 | 2016-12-23 | View | |
| 46736 | CVE-2012-5624 | The XMLHttpRequest object in Qt before 4.8.4 enables http redirection to the file scheme, which allows man-in-the-middle attackers to force the read of arbitrary local files and possibly obtain sensitive information via a file: URL to a QML application. | 2 | 4.3 | Medium | 2017-01-19 | 2013-02-26 | View | |
| 67213 | CVE-2005-1475 | The XMLHttpRequest object in Opera 8.0 Final Build 1095 allows remote attackers to bypass access restrictions and perform unauthorized actions on other domains via a redirect. | 2 | 7.5 | High | 2017-01-03 | 2008-09-05 | View | |
| 70463 | CVE-2005-4874 | The XMLHttpRequest object in Mozilla 1.7.8 supports the HTTP TRACE method, which allows remote attackers to obtain (1) proxy authentication passwords via a request with a "Max-Forwards: 0" header or (2) arbitrary local passwords on the web server that hosts this object. | 2 | 4.3 | Medium | 2017-01-03 | 2008-09-05 | View | |
| 79364 | CVE-2002-0354 | The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the browser to the file on the client, then reading the result using the responseText property. | 2 | 5 | Medium | 2017-01-05 | 2016-10-17 | View |
Page 2592 of 17672, showing 5 records out of 88360 total, starting on record 12956, ending on 12960