CVE-2010-0183
- EPSS 3.92%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a crafted HTML document, related to an improper frame con...
CVE-2010-1196
- EPSS 5.23%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM nod...
CVE-2010-1197
- EPSS 1%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, does not properly handle situations in which both "Content-Disposition: attachment" and "Content-Type: multipart" are present in HTTP headers, which allows remote...
CVE-2010-1198
- EPSS 6.29%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, allows remote attackers to execute arbitrary code via vectors involving multiple plugin instances.
CVE-2010-1199
- EPSS 46.74%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the XSLT node sorting implementation in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a large text value for ...
CVE-2010-1200
- EPSS 6.22%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allow remote attackers to cause a denial of service (memory corruption and ...
CVE-2010-1201
- EPSS 4.59%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.10, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly ex...
CVE-2010-1202
- EPSS 7.32%
- Veröffentlicht 24.06.2010 12:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allow remote attackers to cause a denial of service (memory corruption a...
- EPSS 0.54%
- Veröffentlicht 20.05.2010 17:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox 3.6.x, 3.5.x, 3.0.19, and earlier, and SeaMonkey, executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive applicat...
CVE-2010-1585
- EPSS 0.88%
- Veröffentlicht 28.04.2010 22:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The nsIScriptableUnescapeHTML.parseFragment method in the ParanoidFragmentSink protection mechanism in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 does not properly sanitize HTML in a c...