All Systems Operational

CVE Hub

beta
CVE-2002-0281
cross-site scripting
MEDIUM [5.1]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in DCP-Portal 4.2 and earlier allows remote attackers to gain privileges of other portal users by providing Javascript in the job information field to user_update.php.
dcp-portal.com logo
http://www.dcp-portal.com/contents.php?id=18
dcp-portal.com logo
http://www.dcp-portal.com/contents.php?id=18
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/8197
+5
CVE-2002-0375
cross-site scripting
MEDIUM [5.0]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/9830
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/9830
marc.info logo
http://marc.info/?l=bugtraq&m=102107488402057&w=2
+5
CVE-2002-0217
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting (CSS) vulnerabilities in the Private Message System for XOOPS 1.0 RC1 allow remote attackers to execute Javascript on other web clients via (1) the Title field or a Private Message Box or (2) the image field parameter in pmlite.php.
iss.net logo
http://www.iss.net/security_center/static/8025.php
iss.net logo
http://www.iss.net/security_center/static/8030.php
iss.net logo
http://www.iss.net/security_center/static/8025.php
+7
CVE-2002-0230
cross-site scripting
MEDIUM [5.0]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in fom.cgi of Faq-O-Matic 2.712 allows remote attackers to execute arbitrary Javascript on other clients via the cmd parameter, which causes the script to be inserted into an error message.
debian.org logo
http://www.debian.org/security/2002/dsa-109
debian.org logo
http://www.debian.org/security/2002/dsa-109
marc.info logo
http://marc.info/?l=bugtraq&m=101285834018701&w=2
+5
CVE-2002-0228
sensitive information
MEDIUM [5.0]
Last Modified: 11/20/2024
Microsoft MSN Messenger allows remote attackers to use Javascript that references an ActiveX object to obtain sensitive information such as display names and web site navigation, and possibly more when the user is connected to certain Microsoft sites (or DNS-spoofed sites).
iss.net logo
http://www.iss.net/security_center/static/8084.php
iss.net logo
http://www.iss.net/security_center/static/8084.php
online.securityfocus.com logo
http://online.securityfocus.com/archive/1/254021
+3
CVE-2002-0166
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in analog before 5.22 allows remote attackers to execute Javascript via an HTTP request containing the script, which is entered into a web logfile and not properly filtered by analog during display.
debian.org logo
http://www.debian.org/security/2002/dsa-125
debian.org logo
http://www.debian.org/security/2002/dsa-125
ftp.freebsd.org logo
ftp://ftp.freebsd.org/pub/FreeBSD/CERT/advisories/FreeBSD-SN-02:02.asc
+9
CVE-2002-0118
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Infopop Ultimate Bulletin Board (UBB) 6.2.0 Beta Release 1.0 allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.
iss.net logo
http://www.iss.net/security_center/static/7838.php
iss.net logo
http://www.iss.net/security_center/static/7838.php
online.securityfocus.com logo
http://online.securityfocus.com/archive/1/249031
+3
CVE-2002-0117
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Yet Another Bulletin Board (YaBB) 1 Gold SP 1 and earlier allows remote attackers to execute arbitrary script and steal cookies via a message containing encoded Javascript in an IMG tag.
iss.net logo
http://www.iss.net/security_center/static/7840.php
iss.net logo
http://www.iss.net/security_center/static/7840.php
online.securityfocus.com logo
http://online.securityfocus.com/archive/1/249031
+7
CVE-2002-0136
denial of service
MEDIUM [5.0]
Last Modified: 11/20/2024
Microsoft Internet Explorer 5.5 on Windows 98 allows remote web pages to cause a denial of service (hang) via extremely long values for form fields such as INPUT and TEXTAREA, which can be automatically filled via Javascript.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7938
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7938
online.securityfocus.com logo
http://online.securityfocus.com/archive/1/250592
+3
CVE-2001-1539
denial of service
MEDIUM [5.0]
Last Modified: 11/20/2024
Stack consumption vulnerability in Internet Explorer The JavaScript settimeout function in Internet Explorer allows remote attackers to cause a denial of service (crash) via the JavaScript settimeout function. NOTE: the vendor could not reproduce the problem.
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-12/0008.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-12/0034.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-12/0008.html
+3
CVE-2001-1202
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in DeleGate 7.7.0 and 7.7.1 does not quote scripting commands within a "403 Forbidden" error page, which allows remote attackers to execute arbitrary Javascript on other clients via a URL that generates an error.
iss.net logo
http://www.iss.net/security_center/static/7745.php
iss.net logo
http://www.iss.net/security_center/static/7745.php
marc.info logo
http://marc.info/?l=bugtraq&m=100956050432351&w=2
+3
CVE-2001-1352
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Namazu 2.0.9 and earlier allows remote attackers to execute arbitrary Javascript as other web users via an error message that is returned when an invalid index file is specified in the idxname parameter.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7875
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7875
marc.info logo
http://marc.info/?l=bugtraq&m=100947261916155&w=2
+7
CVE-2001-1351
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Namazu 2.0.8 and earlier allows remote attackers to execute arbitrary Javascript as other web users via the index file name that is displayed when displaying hit numbers.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7875
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7875
marc.info logo
http://marc.info/?l=bugtraq&w=2&r=1&s=namazu&q=b
+3
CVE-2001-1219
denial of service
MEDIUM [5.0]
Last Modified: 11/20/2024
Microsoft Internet Explorer 6.0 and earlier allows malicious website operators to cause a denial of service (client crash) via JavaScript that continually refreshes the window via self.location.
securityfocus.com logo
http://www.securityfocus.com/archive/1/246649
securityfocus.com logo
http://www.securityfocus.com/bid/3730
securityfocus.com logo
http://www.securityfocus.com/archive/1/246649
+1
CVE-2001-1212
cross-site scripting
MEDIUM [5.0]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in catgy.cgi for Aktivate 1.03 allows remote attackers to execute arbitrary Javascript via the desc parameter.
iss.net logo
http://www.iss.net/security_center/static/7717.php
iss.net logo
http://www.iss.net/security_center/static/7717.php
securityfocus.com logo
http://www.securityfocus.com/archive/1/246274
+3
CVE-2001-1199
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in agora.cgi for Agora 3.0a through 4.0g, when debug mode is enabled, allows remote attackers to execute Javascript on other clients via the cart_id parameter.
agoracgi.com logo
http://www.agoracgi.com/security.html
agoracgi.com logo
http://www.agoracgi.com/security.html
iss.net logo
http://www.iss.net/security_center/static/7708.php
+7
CVE-2001-0824
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in IBM WebSphere 3.02 and 3.5 FP2 allows remote attackers to execute Javascript by inserting the Javascript into (1) a request for a .JSP file, or (2) a request to the webapp/examples/ directory, which inserts the Javascript into an error page.
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
securityfocus.com logo
http://www.securityfocus.com/bid/2969
+1
CVE-2001-0722
MEDIUM [6.4]
Last Modified: 11/20/2024
Internet Explorer 5.5 and 6.0 allows remote attackers to read and modify user cookies via Javascript in an about: URL, aka the "First Cookie Handling Vulnerability."
ciac.org logo
http://www.ciac.org/ciac/bulletins/m-016.shtml
ciac.org logo
http://www.ciac.org/ciac/bulletins/m-016.shtml
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-055
+11
CVE-2001-0828
cross-site scripting
MEDIUM [5.1]
Last Modified: 11/20/2024
A cross-site scripting vulnerability in Caucho Technology Resin before 1.2.4 allows a malicious webmaster to embed Javascript in a hyperlink that ends in a .jsp extension, which causes an error message that does not properly quote the Javascript.
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
caucho.com logo
http://www.caucho.com/products/resin/changes.xtp
+9
CVE-2001-0919
MEDIUM [5.1]
Last Modified: 11/20/2024
Internet Explorer 5.50.4134.0100 on Windows ME with "Prompt to allow cookies to be stored on your machine" enabled does not warn a user when a cookie is set using Javascript.
marc.info logo
http://marc.info/?l=bugtraq&m=100679857614967&w=2
marc.info logo
http://marc.info/?l=bugtraq&m=100679857614967&w=2
CVE-2001-1350
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in namazu.cgi for Namazu 2.0.7 and earlier allows remote attackers to execute arbitrary Javascript as other web users via the lang parameter.
marc.info logo
http://marc.info/?l=bugtraq&w=2&r=1&s=namazu&q=b
marc.info logo
http://marc.info/?l=bugtraq&w=2&r=1&s=namazu&q=b
search.namazu.org logo
http://search.namazu.org/ml/namazu-devel-ja/msg02114.html
+1
CVE-2001-0898
sensitive information
MEDIUM [5.0]
Last Modified: 11/20/2024
Opera 6.0 and earlier allows remote attackers to access sensitive information such as cookies and links for other domains via Javascript that uses setTimeout to (1) access data after a new window to the domain has been opened or (2) access data via about:cache.
iss.net logo
http://www.iss.net/security_center/static/7567.php
iss.net logo
http://www.iss.net/security_center/static/7567.php
marc.info logo
http://marc.info/?l=bugtraq&m=100586079932284&w=2
+5
CVE-2001-0723
MEDIUM [6.4]
Last Modified: 11/20/2024
Internet Explorer 5.5 and 6.0 allows remote attackers to read and modify user cookies via Javascript, aka the "Second Cookie Handling Vulnerability."
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-055
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-055
securityfocus.com logo
http://www.securityfocus.com/bid/3546
+1
CVE-2001-0745
sensitive information
MEDIUM [5.0]
Last Modified: 11/20/2024
Netscape 4.7x allows remote attackers to obtain sensitive information such as the user's login, mailbox location and installation path via Javascript that accesses the mailbox: URL in the document.referrer property.
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-06/0014.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-06/0014.html
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/7417
+3
CVE-2001-1157
HIGH [7.5]
Last Modified: 11/20/2024
Baltimore Technologies WEBsweeper 4.0 and 4.02 does not properly filter Javascript from HTML pages, which could allow remote attackers to bypass the filtering via (1) an extra leading < and one or more characters before the SCRIPT tag, or (2) tags using Unicode.
securityfocus.com logo
http://www.securityfocus.com/archive/1/203821
securityfocus.com logo
http://www.securityfocus.com/bid/3172
securityfocus.com logo
http://www.securityfocus.com/bid/3173
+3
CVE-2001-0596
HIGH [7.5]
Last Modified: 11/20/2024
Netscape Communicator before 4.77 allows remote attackers to execute arbitrary Javascript via a GIF image whose comment contains the Javascript.
debian.org logo
http://www.debian.org/security/2001/dsa-051
debian.org logo
http://www.debian.org/security/2001/dsa-051
distro.conectiva.com.br logo
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000393
+13
CVE-2001-0987
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in CGIWrap before 3.7 allows remote attackers to execute arbitrary Javascript on other web clients by causing the Javascript to be inserted into error messages that are generated by CGIWrap.
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-07/0499.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-07/0499.html
cgiwrap.sourceforge.net logo
http://cgiwrap.sourceforge.net/changes.html
+7
CVE-2001-1257
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Horde Internet Messaging Program (IMP) before 2.2.6 and 1.2.6 allows remote attackers to execute arbitrary Javascript embedded in an email.
caldera.com logo
http://www.caldera.com/support/security/advisories/CSSA-2001-027.0.txt
caldera.com logo
http://www.caldera.com/support/security/advisories/CSSA-2001-027.0.txt
debian.org logo
http://www.debian.org/security/2001/dsa-073
+11
CVE-2001-1161
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting (CSS) vulnerability in Lotus Domino 5.0.6 allows remote attackers to execute script on other web clients via a URL that ends in Javascript, which generates an error message that does not quote the resulting script.
iss.net logo
http://www.iss.net/security_center/static/6789.php
iss.net logo
http://www.iss.net/security_center/static/6789.php
kb.cert.org logo
http://www.kb.cert.org/vuls/id/642239
+9
CVE-2001-1084
cross-site scripting
HIGH [7.5]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Allaire JRun 3.0 and 2.3.3 allows a malicious webmaster to embed Javascript in a request for a .JSP, .shtml, .jsp10, .jrun, or .thtml file that does not exist, which causes the Javascript to be inserted into an error message.
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/6793
+9
CVE-2001-1441
cross-site scripting
MEDIUM [6.8]
Last Modified: 11/20/2024
Cross-site scripting (XSS) vulnerability in VisualAge for Java 3.5 Professional allows remote attackers to execute JavaScript on other clients via the URL, which injects the script in the resulting error message.
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
archive.cert.uni-stuttgart.de logo
http://archive.cert.uni-stuttgart.de/archive/bugtraq/2001/07/msg00021.html
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/6793
+3
CVE-2001-0148
HIGH [7.5]
Last Modified: 11/20/2024
The WMP ActiveX Control in Windows Media Player 7 allows remote attackers to execute commands in Internet Explorer via javascript URLs, a variant of the "Frame Domain Verification" vulnerability.
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-01/0000.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2001-01/0000.html
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-015
+3
CVE-2001-0149
lfi
MEDIUM [5.0]
Last Modified: 11/20/2024
Windows Scripting Host in Internet Explorer 5.5 and earlier allows remote attackers to read arbitrary files via the GetObject Javascript function and the htmlfile ActiveX object.
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2000-09/0305.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2000-09/0305.html
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2001/ms01-015
+7
CVE-2000-0958
MEDIUM [5.0]
Last Modified: 11/20/2024
HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2000-10/0349.html
archives.neohapsis.com logo
http://archives.neohapsis.com/archives/bugtraq/2000-10/0349.html
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/5428
+1
CVE-2000-0266
LOW [2.6]
Last Modified: 11/20/2024
Internet Explorer 5.01 allows remote attackers to bypass the cross frame security policy via a malicious applet that interacts with the Java JSObject to modify the DOM properties to set the IFRAME to an arbitrary Javascript URL.
securityfocus.com logo
http://www.securityfocus.com/bid/1121
securityfocus.com logo
http://www.securityfocus.com/templates/archive.pike?list=1&msg=38FC6130.D6D178FD%40nat.bg
securityfocus.com logo
http://www.securityfocus.com/bid/1121
+1
CVE-1999-0790
LOW [2.6]
Last Modified: 11/20/2024
A remote attacker can read information from a Netscape user's cache via JavaScript.
home.netscape.com logo
http://home.netscape.com/security/notes/jscachebrowsing.html
home.netscape.com logo
http://home.netscape.com/security/notes/jscachebrowsing.html
CVE-2000-0081
CRITICAL [10.0]
Last Modified: 11/20/2024
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute the code by using hexadecimal codes to specify the javascript: protocol, e.g. j&#x41;vascript.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0081
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0081
CVE-2000-0061
CRITICAL [10.0]
Last Modified: 11/20/2024
Internet Explorer 5 does not modify the security zone for a document that is being loaded into a window until after the document has been loaded, which could allow remote attackers to execute Javascript in a different security context while the document is loading.
securityfocus.com logo
http://www.securityfocus.com/bid/923
securityfocus.com logo
http://www.securityfocus.com/bid/923
CVE-2000-0085
HIGH [7.5]
Last Modified: 11/20/2024
Hotmail does not properly filter JavaScript code from a user's mailbox, which allows a remote attacker to execute code via the LOWSRC or DYNRC parameters in the IMG tag.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0085
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-2000-0085
CVE-1999-1167
cross-site scripting
MEDIUM [6.4]
Last Modified: 11/20/2024
Cross-site scripting vulnerability in Third Voice Web annotation utility allows remote users to read sensitive data and generate fake web pages for other Third Voice users by injecting malicious Javascript into an annotation.
iss.net logo
http://www.iss.net/security_center/static/7252.php
iss.net logo
http://www.iss.net/security_center/static/7252.php
wired.com logo
http://www.wired.com/news/technology/0%2C1282%2C20636%2C00.html
+3
CVE-1999-0793
LOW [2.6]
Last Modified: 11/20/2024
Internet Explorer allows remote attackers to read files by redirecting data to a Javascript applet.
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-043
docs.microsoft.com logo
https://docs.microsoft.com/en-us/security-updates/securitybulletins/1999/ms99-043
CVE-1999-0750
MEDIUM [5.1]
Last Modified: 11/20/2024
Hotmail allows Javascript to be executed via the HTML STYLE tag, allowing remote attackers to execute commands on the user's Hotmail account.
securityfocus.com logo
http://www.securityfocus.com/bid/630
securityfocus.com logo
http://www.securityfocus.com/bid/630
CVE-1999-0809
MEDIUM [5.0]
Last Modified: 11/20/2024
Netscape Communicator 4.x with Javascript enabled does not warn a user of cookie settings, even if they have selected the option to "Only accept cookies originating from the same server as the page being viewed".
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0809
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0809
CVE-1999-0762
LOW [2.6]
Last Modified: 11/20/2024
When Javascript is embedded within the TITLE tag, Netscape Communicator allows a remote attacker to use the "about" protocol to gain access to browser information.
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0762
exchange.xforce.ibmcloud.com logo
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0762
CVE-1999-0347
CRITICAL [10.0]
Last Modified: 11/20/2024
Internet Explorer 4.01 allows remote attackers to read local files and spoof web pages via a "%01" character in an "about:" Javascript URL, which causes Internet Explorer to use the domain specified after the character.
marc.info logo
http://marc.info/?l=bugtraq&m=91745430007021&w=2
marc.info logo
http://marc.info/?l=ntbugtraq&m=91756771207719&w=2
marc.info logo
http://marc.info/?l=bugtraq&m=91745430007021&w=2
+1
CVE-1999-0537
HIGH [7.5]
Last Modified: 11/20/2024
A configuration in a web browser such as Internet Explorer or Netscape Navigator allows execution of active content such as ActiveX, Java, Javascript, etc.
cve.org logo
https://www.cve.org/CVERecord?id=CVE-1999-0537
cve.org logo
https://www.cve.org/CVERecord?id=CVE-1999-0537
CVE-1999-0031
LOW [2.6]
Last Modified: 11/20/2024
JavaScript in Internet Explorer 3.x and 4.x, and Netscape 2.x, 3.x and 4.x, allows remote attackers to monitor a user's web activities, aka the Bell Labs vulnerability.
codetalker.com logo
http://www.codetalker.com/advisories/vendor/hp/hpsbux9707-065.html
codetalker.com logo
http://www.codetalker.com/advisories/vendor/hp/hpsbux9707-065.html