| ID | Date Public | Name |
|---|
VU#237888 | 11/05/2007 | Mortbay Jetty Dump Servlet vulnerable to cross-site scripting |
VU#435444 | 10/15/2003 | Microsoft Outlook Web Access (OWA) contains cross-site scripting vulnerability in the "Compose New Message" form |
VU#342793 | 10/26/2007 | RSA Keon cross-site scripting vulnerabilities |
VU#292457 | 06/05/2007 | HP System Management Homepage cross-site scripting vulnerability |
VU#808921 | 04/19/1999 | eBay contains a cross-site scripting vulnerability |
VU#138538 | 07/13/2005 | WebEOC is vulnerable to cross-site scripting attacks |
VU#716144 | 12/23/2004 | Verity Ultraseek contains a cross-site scripting vulnerability in the processing of search requests |
VU#114070 | 03/02/2004 | NetScreen Instant Virtual Extranet (IVE) platform contains cross-site scripting vulnerability in delhomepage.cgi |
VU#636431 | 03/19/2002 | Verity's Search97 contains a Cross-Site Scripting vulnerability in the processing of search requests |
VU#744590 | 07/15/2004 | Board Power contains cross-site scripting vulnerability in the 'action' parameter of 'icq.cgi' |
VU#107998 | 11/03/2004 | MailPost vulnerable to cross-site scripting in the 'append' variable passed to the file as part of an HTTP GET request |
VU#596046 | 11/03/2004 | MailPost vulnerable to cross-site scripting via an executable requested with a trailing slash appended to the filename |
VU#882619 | 02/01/2009 | Rockwell Automation ControlLogix 1756-ENBT/A EtherNet/IP Bridge cross-site scripting vulnerability |
VU#758769 | 12/19/2007 | Adobe Flash Player asfunction protocol may enable cross-site scripting |
VU#340409 | 02/08/2005 | Microsoft Windows SharePoint Services and SharePoint Team Services cross-site scripting vulnerabilities |
VU#197318 | 01/26/2004 | IBM Net.Data db2www CGI interpreter fails to properly validate requested macro filenames |
VU#139931 | 06/12/2002 | Microsoft SQLXML HTTP components vulnerable to cross-site scripting via root parameter |
VU#240329 | 10/02/2002 | Apache HTTPD server vulnerable to cross site scripting on error page when using wildcard DNS |
VU#668206 | 09/23/2004 | Macromedia JRun Server is vulnerable to a cross-site scripting attack |
VU#715737 | 11/07/2007 | Mozilla-based browsers jar: URI cross-site scripting vulnerability |
VU#862600 | 07/21/2007 | Apache Tomcat SendMailServlet example vulnerable to cross-site scripting via FROM field |
VU#455604 | 10/10/2006 | Microsoft .NET Framework contains a cross-site scripting vulnerability |
VU#337585 | 03/06/2006 | Pubcookie login server contains cross-site scripting vulnerabilities |
VU#314540 | 03/06/2006 | Pubcookie application server modules contain cross-site scripting vulnerabilities |
VU#300373 | 06/14/2005 | Microsoft Outlook Web Access vulnerable to cross-site scripting |
VU#798611 | 02/06/2002 | Oracle 9iAS contains cross-site scripting vulnerability in "htp.print" |
VU#132011 | 02/28/2002 | Snitz Forums 2000 vulnerable to cross-site scripting via crafted IMG tag |
VU#246409 | 07/19/2003 | CGI.pm vulnerable to Cross-site Scripting |
VU#249337 | 05/18/2007 | Flash authoring tools create Flash files that contain cross-site scripting vulnerabilities |
VU#366900 | 09/26/2006 | Roller Weblogger contains a cross-site scripting vulnerability |
VU#108884 | 09/12/2006 | Microsoft Indexing Services vulnerable to cross-site scripting |
VU#886699 | 04/10/2002 | Microsoft Internet Information Server (IIS) contains cross-site scripting vulnerability in HTTP error page results |
VU#948750 | 08/10/2004 | Microsoft Outlook Web Access contains vulnerability in HTML redirection query |
VU#883091 | 04/10/2002 | Microsoft Internet Information Server (IIS) contains cross-site scripting vulnerability in IIS Help Files search facility |
VU#750796 | 01/05/2010 | Liferay Portal p_p_id parameter vulnerable to persistent cross-site scripting |
VU#815960 | 12/29/2006 | Adobe Acrobat Plug-In cross domain violation |
VU#212984 | 11/03/2007 | Mortbay Jetty vulnerable to HTTP response splitting |
VU#262352 | 09/21/2006 | Sun Secure Global Desktop Software (SSGD) contains multiple cross-site scripting vulnerabilities |
VU#366372 | 04/15/2005 | RSA Authentication Agent for Web fails to properly validate input |
VU#520707 | 04/10/2002 | Microsoft Internet Information Server (IIS) contains cross-site scripting vulnerability in redirect response messages |
VU#488684 | 10/06/2003 | Hummingbird CyberDOCS contains multiple cross-site scripting vulnerabilities |
VU#845708 | 06/21/2007 | Apple WebCore XMLHttpRequest fails to properly serialize headers into an HTTP request |
VU#705529 | 04/16/2008 | Apple Safari WebKit fails to properly handle a crafted URL |
VU#559616 | 11/15/2006 | Autonomy Ultraseek default configuration does not adequately restrict in-document highlighting |
VU#927548 | 08/08/2006 | Microsoft Management Console cross-site scripting vulnerability |
VU#981651 | 07/02/2001 | Caucho Technologies Resin vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#560659 | 07/02/2001 | IBM WebSphere vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#642239 | 07/02/2001 | Lotus Domino Server R5 vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#707100 | 12/10/2003 | Multiple web-based email services fail to filter malicious characters when the message contains cascading style sheet character escaping |
VU#288308 | 12/28/2003 | Microsoft Internet Information Server (IIS) vulnerable to cross-site scripting via HTTP TRACK method |
VU#270083 | 07/02/2001 | IBM VisualAge Professional vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#672683 | 07/02/2001 | Apache Tomcat vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#361600 | 01/17/2002 | Web-based email services filtering systems vulnerable to malicous script execution |
VU#766019 | 03/18/2008 | Apple Safari vulnerable to xss via the processing of JavaScript URLs |
VU#289988 | 06/25/2007 | Apple Safari cross-domain HTTP redirection race condition |
VU#615857 | 02/21/2007 | Google Desktop vulnerable to cross-site scripting |
VU#885665 | 12/07/2006 | MySpace fails to properly filter user-supplied content |
VU#473902 | 02/05/2004 | Multiple Real media players fail to properly validate SMIL files |
VU#654643 | 07/02/2001 | Allaire JRun Java Application Server vulnerable to Cross-Site Scripting via passing of user input directly to default error page |
VU#768702 | 01/25/2005 | Multiple devices process HTTP requests inconsistently |
VU#664422 | 08/31/2004 | PhpWebSite contains multiple cross-site scripting vulnerabilities |
VU#534710 | 05/07/2005 | Mozilla fails to properly prevent "JavaScript:" URIs containing "eval()" from being executed in the context of other URIs in the history list |
VU#162097 | 10/22/2002 | Microsoft Internet Explorer does not adequately validate references to cached objects and methods |
VU#305208 | 12/05/2007 | Caucho Resin vulnerable to XSS via "file" parameter to "viewfile" |
VU#732449 | 01/10/2008 | Liferay Portal User Profile Greeting stored XSS |
VU#326065 | 01/10/2008 | Liferay Portal Enterprise Admin User-Agent HTTP header XSS |
VU#888209 | 01/10/2008 | Liferay Portal Forgot Password User-Agent HTTP header XSS |
VU#438616 | 11/05/2007 | Mortbay Jetty fails to properly handle cookies with quotes |
VU#923508 | 06/18/2008 | Microsoft Internet Explorer 6 contains a cross-domain vulnerability |
VU#935737 | 12/19/2007 | Adobe Flash Player may load arbitrary, malformed cross-domain policy files |
VU#767825 | 01/10/2008 | Liferay Portal fails to protect against CSRF |
VU#217825 | 01/10/2008 | Liferay Portal Admin portlet Shutdown message XSS |
VU#989144 | 11/17/2006 | Google Mini and Google Search Appliance vulnerable to cross-site scripting |
VU#252764 | 08/08/2006 | Microsoft Internet Explorer source element cross-domain vulnerability |
VU#114956 | 03/08/2005 | Sun ONE and Sun Java System Applications vulnerable to cross-site scripting via default error page |
VU#782243 | 08/21/2001 | TDForum does not adequately validate user input thereby allowing users to embed malicious script code in messages |
VU#466521 | 03/25/2008 | Mozilla JavaScript privilege escalation |
VU#625878 | 01/31/2005 | Single crafted HTTP request may result in multiple responses |
VU#153043 | 01/24/2002 | SquirrelMail compose.php script does not adequately validate input thereby allowing arbitrary user to send messages |
VU#911004 | 07/25/2006 | Mozilla Firefox fails to properly handle the "XPCNativeWrapper(window).Function(...)" |
VU#794236 | 01/31/2008 | SkypeFind fails to properly sanitize user-supplied input |
VU#993544 | 08/13/2007 | Apache Tomcat fails to properly handle cookies containing single quotes |
VU#356600 | 12/15/2004 | Microsoft Internet Explorer DHTML Editing ActiveX control contains a cross-domain vulnerability |
VU#744139 | 04/08/2002 | AOL Instant Messenger installer adds "http://free.aol.com" to Trusted Sites Zone in Microsoft Internet Explorer |
VU#663763 | 08/06/2008 | Apache mod_proxy_ftp XSS vulnerability |
VU#190939 | 06/04/2008 | HP Online Support Services ActiveX AppendStringToFile() arbitrary file writing |
VU#857539 | 06/04/2008 | HP Online Support Services ActiveX DeleteSingleFile() arbitrary file deletion |
VU#998779 | 06/04/2008 | HP Online Support Services ActiveX StartApp() arbitrary code execution |
VU#221123 | 06/04/2008 | HP Online Support Services ActiveX MoveFile() buffer overflow |
VU#526131 | 06/04/2008 | HP Online Support Services ActiveX RegistryString() buffer overflow |
VU#558163 | 06/04/2008 | HP Online Support Services ActiveX GetFileTime() buffer overflow |
VU#592425 | 02/02/2006 | Mozilla-based products fail to validate user input to the attribute name in "XULDocument.persist" |
VU#372797 | 07/13/2005 | WebEOC contains multiple SQL injection vulnerabilities |
VU#949587 | 06/04/2008 | HP Online Support Services ActiveX DownloadFile() arbitrary file download |
VU#754403 | 06/04/2008 | HP Online Support Services ActiveX ExtractCab() buffer overflow |
VU#138457 | 07/10/2007 | Adobe Flash Player fails to properly validate HTTP Referers |
VU#405092 | 12/19/2006 | Mozilla products allows the src attribute in an img element to be changed to a JavaScript URI |
VU#580299 | 02/08/2005 | Microsoft Internet Explorer contains URL decoding cross-domain vulnerability |
VU#143297 | 06/04/2007 | Mozilla Firefox allows cross-domain iframe access via JavaScript |
VU#571584 | 09/25/2007 | Google Gmail cross-site request forgery vulnerability |
VU#883108 | 06/27/2006 | Microsoft Internet Explorer HTML Document object cross-domain vulnerability |
VU#996798 | 07/13/2005 | Mozilla Firefox insecurely handles content from external applications |
VU#248184 | 01/17/2008 | Skype does not properly filter input from external websites |
VU#228569 | 02/12/2008 | Microsoft Internet Explorer property memory corruption vulnerability |
VU#347448 | 12/12/2006 | Microsoft Internet Explorer fails to properly handle malformed DHTML script function calls |
VU#855118 | 11/04/2005 | Apple QuickTime PictureViewer PICT data decompression buffer overflow |
VU#433341 | 11/08/2005 | Microsoft Windows vulnerable to buffer overflow via specially crafted WMF file |
VU#218621 | 07/12/2005 | Microsoft Word buffer overflow in font processing routine |
VU#810073 | 06/12/2007 | Microsoft Windows Secure Channel integer underflow |
VU#304064 | 01/03/2007 | Apple Quicktime HREFTrack Cross-Zone Scripting vulnerability |
VU#136849 | 06/13/2006 | Microsoft Internet Explorer UTF-8 decoding vulnerability |
VU#847803 | 07/25/2001 | Php variables passed from the browser are stored in global context |
VU#290961 | 06/06/2007 | Microsoft Windows GDI+ ICO InfoHeader Height division by zero vulnerability |
VU#694344 | 12/12/2006 | Microsoft Internet Explorer TIF Folder arbitrary file access vulnerability |
VU#887861 | 05/28/2005 | Microsoft Internet Explorer vulnerable to code execution via mismatched DOM objects |
VU#134756 | 03/18/2005 | Microsoft Windows buffer overflow in Enhanced Metafile rendering API |
VU#720742 | 07/12/2005 | Microsoft Color Management Module buffer overflow during profile tag validation |
VU#273262 | 02/02/2002 | Multiple web browsers vulnerable to spoofing via Internationalized Domain Name support |
VU#756122 | 04/12/2005 | Microsoft Internet Explorer URL validation routine contains a buffer overflow |
VU#823971 | 02/08/2005 | Microsoft Internet Explorer contains a Channel Definition Format (CDF) cross-domain vulnerability |
VU#598147 | 12/19/2001 | Microsoft Internet Explorer does not properly handle document.open() |
VU#468800 | 08/14/2007 | Microsoft Windows VML compressed content integer underflow |
VU#711843 | 04/17/2002 | Microsoft Internet Explorer contains cross-site scripting vulnerabilities in local HTML resources |
VU#599832 | 12/12/2006 | Microsoft Internet Explorer Script Error Handling Memory Corruption Vulnerability |
VU#876678 | 03/22/2006 | Microsoft Internet Explorer createTextRange() vulnerability |
VU#189754 | 06/14/2005 | Microsoft Internet Explorer buffer overflow in PNG image rendering component |
VU#222050 | 04/12/2005 | Microsoft Internet Explorer Content Advisor contains a buffer overflow |
VU#774338 | 04/12/2005 | Microsoft Internet Explorer DHTML objects contain a race condition |
VU#637760 | 10/12/2004 | Microsoft Internet Explorer Install Engine contains a buffer overflow vulnerability |
VU#843771 | 02/08/2005 | Microsoft Internet Explorer contains a DHTML method heap memory corruption vulnerability |
VU#613564 | 02/13/2007 | Microsoft Internet Explorer fails to properly interpret certain responses from FTP servers |
VU#817108 | 06/11/2006 | Yahoo! Mail script injection vulnerability |
VU#207264 | 07/11/2004 | Microsoft Internet Explorer does not properly handle function redirection |
VU#448569 | 12/06/2006 | Adobe Download Manager buffer overflow |
VU#655100 | 06/27/2006 | Microsoft Internet Explorer fails to properly handle CLSID extensions |
VU#208769 | 11/22/2006 | Microsoft Windows Media Player fails to properly handle malformed Windows Media Metafiles |
VU#191609 | 03/29/2007 | Microsoft Windows animated cursor stack buffer overflow |
VU#122084 | 01/09/2007 | Microsoft Internet Explorer VML buffer overflow |
VU#165022 | 01/13/2003 | Microsoft Log Sink Class ActiveX control incorrectly marked "safe for scripting" |
VU#416092 | 09/18/2006 | Microsoft Internet Explorer VML stack buffer overflow |
VU#313225 | 03/06/2007 | Apple QuickTime QTIF heap buffer overflow |
VU#568689 | 03/06/2007 | Apple QuickTime 3GP integer overflow |
VU#861817 | 03/06/2007 | Apple QuickTime UDTA atom integer overflow |
VU#410993 | 03/06/2007 | Apple QuickTime QTIF integer overflow |
VU#642433 | 03/06/2007 | Apple QuickTime QTIF stack buffer overflow |
VU#442497 | 01/02/2007 | Apple QuickTime RTSP buffer overflow |
VU#181038 | 12/27/2005 | Microsoft Windows Metafile handler SETABORTPROC GDI Escape vulnerability |
VU#659761 | 11/23/2007 | Apple QuickTime RTSP Content-Type header stack buffer overflow |
VU#728563 | 04/17/2002 | Microsoft Internet Explorer does not adequately validate source of dialog frame |
VU#713878 | 06/03/2004 | Microsoft Internet Explorer does not properly validate source of redirected frame |
VU#112179 | 01/10/2008 | Apple QuickTime RTSP Response message Reason-Phrase buffer overflow vulnerability |
If this page is empty, your search did not match any documents.