4.6
CVE-2004-0907
- EPSS 0.42%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:06:38
- Erkennungen
The Linux install .tar.gz archives for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8, create certain files with insecure permissions, which could allow local users to overwrite those files and execute arbitrary code.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Thunderbird Version 0.1
Mozilla ≫ Thunderbird Version 0.2
Mozilla ≫ Thunderbird Version 0.3
Mozilla ≫ Thunderbird Version 0.4
Mozilla ≫ Thunderbird Version 0.5
Mozilla ≫ Thunderbird Version 0.6
Mozilla ≫ Thunderbird Version 0.7
Mozilla ≫ Thunderbird Version 0.7.1
Mozilla ≫ Thunderbird Version 0.7.2
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.42% | 0.335 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.6 | 3.9 | 6.4 |
AV:L/AC:L/Au:N/C:P/I:P/A:P
|
http://security.gentoo.org/glsa/glsa-200409-26.xml
http://www.mozilla.org/projects/security/known-vulnerabilities.html#mozilla1.7.3
http://bugzilla.mozilla.org/show_bug.cgi?id=254303
https://exchange.xforce.ibmcloud.com/vulnerabilities/17373