Show filters
234 Total Results
Displaying 231-234 of 234
Sort by:
Attacker Value
Unknown
CVE-2013-2882
Disclosure Date: July 31, 2013 (last updated October 05, 2023)
Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
0
Attacker Value
Unknown
CVE-2012-2330
Disclosure Date: August 13, 2012 (last updated October 04, 2023)
The Update method in src/node_http_parser.cc in Node.js before 0.6.17 and 0.7 before 0.7.8 does not properly check the length of a string, which allows remote attackers to obtain sensitive information (request header contents) and possibly spoof HTTP headers via a zero length string.
0
Attacker Value
Unknown
CVE-2008-7220
Disclosure Date: September 13, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests" via unknown vectors.
0
Attacker Value
Unknown
CVE-2007-2383
Disclosure Date: April 30, 2007 (last updated October 04, 2023)
The Prototype (prototypejs) framework before 1.5.1 RC3 exchanges data using JavaScript Object Notation (JSON) without an associated protection scheme, which allows remote attackers to obtain the data via a web page that retrieves the data through a URL in the SRC attribute of a SCRIPT element and captures the data using other JavaScript code, aka "JavaScript Hijacking."
0