- EPSS 0.75%
- Veröffentlicht 11.06.2014 10:57:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript...
CVE-2014-1540
- EPSS 1.11%
- Veröffentlicht 11.06.2014 10:57:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the nsEventListenerManager::CompileEventHandlerInternal function in the Event Listener Manager in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory ...
- EPSS 2.64%
- Veröffentlicht 11.06.2014 10:57:17
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the RefreshDriverTimer::TickDriver function in the SMIL Animation Controller in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allows remote attackers to execute arbitrary code o...
CVE-2014-1530
- EPSS 0.87%
- Veröffentlicht 30.04.2014 10:49:05
- Zuletzt bearbeitet 25.11.2025 17:50:16
The docshell implementation in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to trigger the loading of a URL with a spoofed baseURI property, and conduct cross-si...
CVE-2014-1531
- EPSS 5.09%
- Veröffentlicht 30.04.2014 10:49:05
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the nsGenericHTMLElement::GetWidthHeightForImage function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to execute arbitrary co...
CVE-2014-1532
- EPSS 4.89%
- Veröffentlicht 30.04.2014 10:49:05
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the nsHostResolver::ConditionallyRefreshRecord function in libxul.so in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to execute a...
CVE-2014-1518
- EPSS 2.82%
- Veröffentlicht 30.04.2014 10:49:04
- Zuletzt bearbeitet 25.11.2025 17:50:16
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allow remote attackers to cause a denial of service (memory corruption and app...
CVE-2014-1519
- EPSS 2.19%
- Veröffentlicht 30.04.2014 10:49:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via u...
CVE-2014-1520
- EPSS 0.04%
- Veröffentlicht 30.04.2014 10:49:04
- Zuletzt bearbeitet 25.11.2025 17:50:16
maintenservice_installer.exe in the Maintenance Service Installer in Mozilla Firefox before 29.0 and Firefox ESR 24.x before 24.5 on Windows allows local users to gain privileges by placing a Trojan horse DLL file into a temporary directory at an uns...
CVE-2014-1522
- EPSS 0.76%
- Veröffentlicht 30.04.2014 10:49:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 29.0 and SeaMonkey before 2.26 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read, mem...