Vulnerabilities > Microsoft > Windows 7 > Low

DATE CVE VULNERABILITY TITLE RISK
2011-05-07 CVE-2011-1570 Cross-Site Scripting vulnerability in Liferay Portal
Cross-site scripting (XSS) vulnerability in Liferay Portal Community Edition (CE) 6.x before 6.0.6 GA, when Apache Tomcat is used, allows remote authenticated users to inject arbitrary web script or HTML via a message title, a different vulnerability than CVE-2004-2030.
3.5
2010-07-30 CVE-2010-1796 Information Exposure vulnerability in Apple Safari and Webkit
The AutoFill feature in Apple Safari before 5.0.1 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1.1 on Mac OS X 10.4, allows remote attackers to obtain sensitive Address Book Card information via JavaScript code that forces keystroke events for input fields.
network
high complexity
apple microsoft CWE-200
2.6