5
CVE-2005-0149
- EPSS 1.68%
- Veröffentlicht 15.02.2005 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:10:36
- Erkennungen
Thunderbird 0.6 through 0.9 and Mozilla 1.7 through 1.7.3 does not obey the network.cookie.disableCookieForMailNews preference, which could allow remote attackers to bypass the user's intended privacy and security policy by using cookies in e-mail messages.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Mozilla ≫ Thunderbird Version 0.6
Mozilla ≫ Thunderbird Version 0.7
Mozilla ≫ Thunderbird Version 0.7.1
Mozilla ≫ Thunderbird Version 0.7.2
Mozilla ≫ Thunderbird Version 0.7.3
Mozilla ≫ Thunderbird Version 0.9
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.68% | 0.739 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:P/A:N
|
http://www.redhat.com/support/errata/RHSA-2005-323.html
http://www.redhat.com/support/errata/RHSA-2005-335.html
http://secunia.com/advisories/19823
http://www.novell.com/linux/security/advisories/2006_04_25.html
http://www.securityfocus.com/bid/12407
http://www.mozilla.org/security/announce/mfsa2005-11.html
http://www.redhat.com/support/errata/RHSA-2005-094.html
https://bugzilla.mozilla.org/show_bug.cgi?id=268107
https://exchange.xforce.ibmcloud.com/vulnerabilities/19172
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100047
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11407