5

CVE-2005-0149

Thunderbird 0.6 through 0.9 and Mozilla 1.7 through 1.7.3 does not obey the network.cookie.disableCookieForMailNews preference, which could allow remote attackers to bypass the user's intended privacy and security policy by using cookies in e-mail messages.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Mozilla Version 1.7
Mozilla ≫ Mozilla Version 1.7 Update alpha
Mozilla ≫ Mozilla Version 1.7 Update beta
Mozilla ≫ Mozilla Version 1.7 Update rc1
Mozilla ≫ Mozilla Version 1.7 Update rc2
Mozilla ≫ Mozilla Version 1.7 Update rc3
Mozilla ≫ Mozilla Version 1.7.1
Mozilla ≫ Mozilla Version 1.7.2
Mozilla ≫ Mozilla Version 1.7.3
Mozilla ≫ Thunderbird Version 0.6
Mozilla ≫ Thunderbird Version 0.7
Mozilla ≫ Thunderbird Version 0.7.1
Mozilla ≫ Thunderbird Version 0.7.2
Mozilla ≫ Thunderbird Version 0.7.3
Mozilla ≫ Thunderbird Version 0.9
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.68% 0.739
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://www.redhat.com/support/errata/RHSA-2005-323.html
Patch
Vendor Advisory
http://www.redhat.com/support/errata/RHSA-2005-335.html
Patch
Vendor Advisory
http://secunia.com/advisories/19823
http://www.novell.com/linux/security/advisories/2006_04_25.html
http://www.securityfocus.com/bid/12407
http://www.mozilla.org/security/announce/mfsa2005-11.html
Patch
Vendor Advisory
http://www.redhat.com/support/errata/RHSA-2005-094.html
Patch
Vendor Advisory
https://bugzilla.mozilla.org/show_bug.cgi?id=268107
Patch
Vendor Advisory
https://exchange.xforce.ibmcloud.com/vulnerabilities/19172
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100047
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11407