CVE-2012-4188
- EPSS 55.61%
- Veröffentlicht 10.10.2012 17:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary...
CVE-2012-5354
- EPSS 0.89%
- Veröffentlicht 10.10.2012 17:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has multiple menus of SELECT elements active, which allows remote attackers to conduct clickjacking attacks vi...
CVE-2012-3982
- EPSS 1.28%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allow remote attackers to cause a denial...
- EPSS 0.77%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly ex...
CVE-2012-3984
- EPSS 1.95%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has a SELECT element's menu active, which allows remote attackers to spoof page content via vectors involving ...
CVE-2012-3985
- EPSS 0.92%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly implement the HTML5 Same Origin Policy, which allows remote attackers to conduct cross-site scripting (XSS) attacks by leveraging initial-origin access af...
CVE-2012-3986
- EPSS 0.84%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly restrict calls to DOMWindowUtils (aka nsDOMWindowUtils) methods, which allows remote a...
- EPSS 0.23%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0 on Android assigns chrome privileges to Reader Mode pages, which allows user-assisted remote attackers to bypass intended access restrictions via a crafted web site.
CVE-2012-3988
- EPSS 3.99%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 might allow user-assisted remote attackers to execute arbitrary code v...
CVE-2012-3989
- EPSS 0.85%
- Veröffentlicht 10.10.2012 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly perform a cast of an unspecified variable during use of the instanceof operator on a JavaScript object, which allows remote attackers to execute arbitrary...