Mozilla

Mozilla

108 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 36.18%
  • Published 13.07.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone base objects, which allows remote attackers to execute arbitrary code by navigating the prototype chain to reach a privileged object.

Exploit
  • EPSS 4.32%
  • Published 05.07.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Mozilla 1.7.8, Firefox 1.0.4, Camino 0.8.4, Netscape 8.0.2, and K-Meleon 0.9, and possibly other products that use the Gecko engine, allow remote attackers to cause a denial of service (application crash) via JavaScript that repeatedly calls an empty...

  • EPSS 0.8%
  • Published 14.06.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerability, a re-introduction of a vulnerability that wa...

  • EPSS 2.2%
  • Published 12.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly implement certain security checks for script injection, which allows remote attackers to execute script via "Wrapped" javascript: URLs, as demonstrated using (1) a javascript: URL ...

  • EPSS 17.43%
  • Published 12.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0.4 and Mozilla Suite before 1.7.8 do not properly limit privileges of Javascript eval and Script objects in the calling context, which allows remote attackers to conduct unauthorized activities via "non-DOM property overrides," a va...

  • EPSS 0.75%
  • Published 02.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links "with a custom getter and toString method" that are middle-clicked by the user to be opened in a new tab.

  • EPSS 0.06%
  • Published 02.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox 0.9, Thunderbird 0.6 and other versions before 0.9, and Mozilla 1.7 before 1.7.5 save temporary files with world-readable permissions, which allows local users to read certain web content or attachments that belong to other users, e.g. conten...

  • EPSS 0.64%
  • Published 02.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phishing attacks.

  • EPSS 0.77%
  • Published 02.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click performs a paste operation.

  • EPSS 1.13%
  • Published 02.05.2005 04:00:00
  • Last modified 03.04.2025 01:03:51

Firefox before 1.0 and Mozilla before 1.7.5, when configured to use a proxy, respond to 407 proxy auth requests from arbitrary servers, which allows remote attackers to steal NTLM or SPNEGO credentials.