|
298061
|
- |
|
google apple
|
chrome android iphone_os safari
|
WebKit, as used in Google Chrome before 15.0.874.102 and Android before 4.4, allows remote attackers to bypass the Same Origin Policy and conduct Universal XSS (UXSS) attacks via vectors related to (…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3881
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298062
|
- |
|
google
|
chrome
|
Google Chrome before 15.0.874.102 does not properly handle drag and drop operations on URL strings, which allows user-assisted remote attackers to spoof the URL bar via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2011-3875
|
2024-11-21 10:31 |
2011-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298063
|
- |
|
simplemachines
|
smf
|
Cross-site request forgery (CSRF) vulnerability in Simple Machines Forum (SMF) 2.x before 2.0.1 allows remote attackers to hijack the authentication of administrators or moderators via vectors involv…
|
CWE-352
Origin Validation Error
|
CVE-2011-4173
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298064
|
- |
|
kent-web
|
web_forum
|
Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject arbitrary web script or HTML via (1) an e-mail address field or (2) a cookie, a r…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4172
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298065
|
- |
|
ibm
|
websphere_ilog_rule_team_server
|
Cross-site scripting (XSS) vulnerability in content/error.jsp in IBM WebSphere ILOG Rule Team Server 7.1.1 allows remote attackers to inject arbitrary web script or HTML via the project parameter to …
|
CWE-79
Cross-site Scripting
|
CVE-2011-4171
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298066
|
- |
|
kent-web
|
web_forum
|
Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to "web form entries."
|
CWE-79
Cross-site Scripting
|
CVE-2011-3984
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298067
|
- |
|
kent-web
|
web_forum
|
Cross-site scripting (XSS) vulnerability in KENT-WEB WEB FORUM 5.1 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to cookies.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3983
|
2024-11-21 10:31 |
2011-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298068
|
- |
|
gnome
|
empathy
|
Cross-site scripting (XSS) vulnerability in the theme_adium_append_message function in empathy-theme-adium.c in the Adium theme in libempathy-gtk in Empathy 3.2.1 and earlier allows remote attackers …
|
CWE-79
Cross-site Scripting
|
CVE-2011-4170
|
2024-11-21 10:31 |
2011-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298069
|
- |
|
xia_zuojie
|
nexusphp
|
SQL injection vulnerability in thanks.php in NexusPHP 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2011-4026
|
2024-11-21 10:31 |
2011-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298070
|
- |
|
ocsinventory-ng
|
ocs_inventory_ng
|
Cross-site scripting (XSS) vulnerability in ocsinventory in OCS Inventory NG 2.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4024
|
2024-11-21 10:31 |
2011-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|