|
295021
|
- |
|
google
|
chrome
|
Use-after-free vulnerability in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to media buffers.
|
CWE-416
Use After Free
|
CVE-2011-3882
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295022
|
- |
|
google
|
chrome
|
Google Chrome before 15.0.874.102 does not prevent use of an unspecified special character as a delimiter in HTTP headers, which has unknown impact and remote attack vectors.
|
CWE-20
Improper Input Validation
|
CVE-2011-3880
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295023
|
- |
|
google
|
chrome
|
Google Chrome before 15.0.874.102 does not prevent redirects to chrome: URLs, which has unspecified impact and remote attack vectors.
|
NVD-CWE-noinfo
|
CVE-2011-3879
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295024
|
- |
|
google
|
chrome
|
Race condition in Google Chrome before 15.0.874.102 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to worker process initialization.
|
CWE-362
Race Condition
|
CVE-2011-3878
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295025
|
- |
|
google
|
chrome
|
Cross-site scripting (XSS) vulnerability in the appcache internals page in Google Chrome before 15.0.874.102 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3877
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295026
|
- |
|
google
|
chrome
|
Google Chrome before 15.0.874.102 does not properly handle downloading files that have whitespace characters at the end of a filename, which has unspecified impact and user-assisted remote attack vec…
|
NVD-CWE-noinfo
|
CVE-2011-3876
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295027
|
- |
|
google apple
|
chrome android iphone_os safari
|
WebKit, as used in Google Chrome before 15.0.874.102 and Android before 4.4, allows remote attackers to bypass the Same Origin Policy and conduct Universal XSS (UXSS) attacks via vectors related to (…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3881
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295028
|
- |
|
google
|
chrome
|
Google Chrome before 15.0.874.102 does not properly handle drag and drop operations on URL strings, which allows user-assisted remote attackers to spoof the URL bar via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2011-3875
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295029
|
- |
|
simplemachines
|
smf
|
Cross-site request forgery (CSRF) vulnerability in Simple Machines Forum (SMF) 2.x before 2.0.1 allows remote attackers to hijack the authentication of administrators or moderators via vectors involv…
|
CWE-352
Origin Validation Error
|
CVE-2011-4173
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295030
|
- |
|
kent-web
|
web_forum
|
Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject arbitrary web script or HTML via (1) an e-mail address field or (2) a cookie, a r…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4172
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|