Mozilla

Firefox

2867 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.51%
  • Published 24.11.2006 17:07:00
  • Last modified 09.04.2025 00:30:58

The (1) Password Manager in Mozilla Firefox 2.0, and 1.5.0.8 and earlier; and the (2) Passcard Manager in Netscape 8.1.2 and possibly other versions, do not properly verify that an ACTION URL in a FORM element containing a password INPUT element matc...

  • EPSS 9.1%
  • Published 08.11.2006 22:07:00
  • Last modified 09.04.2025 00:30:58

Unspecified vulnerability in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allows remote attackers to execute arbitrary JavaScript bytecode via unspecified vectors involving modification of a Script object whi...

  • EPSS 12.79%
  • Published 08.11.2006 21:07:00
  • Last modified 09.04.2025 00:30:58

Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6, when using an RSA key with exponent 3, does not properly handle extra data in a signature...

  • EPSS 22.09%
  • Published 08.11.2006 21:07:00
  • Last modified 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) via unspecified vectors.

  • EPSS 12.45%
  • Published 08.11.2006 21:07:00
  • Last modified 09.04.2025 00:30:58

Unspecified vulnerability in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allows remote attackers to execute arbitrary code via the XML.prototype.hasOwnProperty JavaScript function.

  • EPSS 12.33%
  • Published 08.11.2006 21:07:00
  • Last modified 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code vi...

  • EPSS 0.84%
  • Published 07.11.2006 23:07:00
  • Last modified 09.04.2025 00:30:58

Firefox 1.5.0.7 on Kubuntu Linux allows remote attackers to cause a denial of service (crash) via a long URL in an A tag. NOTE: this issue has been disputed by several vendors, who could not reproduce the report. In addition, the scope of the impact...

Exploit
  • EPSS 16.08%
  • Published 31.10.2006 22:07:00
  • Last modified 09.04.2025 00:30:58

Firefox 1.5.0.7 and 2.0, and Seamonkey 1.1b, allows remote attackers to cause a denial of service (crash) by creating a range object using createRange, calling selectNode on a DocType node (DOCUMENT_TYPE_NODE), then calling createContextualFragment o...

  • EPSS 7.26%
  • Published 05.10.2006 04:04:00
  • Last modified 09.04.2025 00:30:58

Stack-based buffer overflow in Mozilla Firefox allows remote attackers to execute arbitrary code via unspecified vectors involving JavaScript. NOTE: the vendor and original researchers have released a follow-up comment disputing the severity of this...

  • EPSS 0.45%
  • Published 05.10.2006 04:04:00
  • Last modified 09.04.2025 00:30:58

Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and original researchers have released a follow-up comment disputing this issue, in which one researcher st...