- EPSS 76.47%
- Veröffentlicht 07.08.2013 01:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The crypto.generateCRMFRequest function in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 allows remote attackers to execute arbitrary JavaScript c...
CVE-2013-1712
- EPSS 0.17%
- Veröffentlicht 07.08.2013 01:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple untrusted search path vulnerabilities in updater.exe in Mozilla Updater in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, and Thunderbird ESR 17.x before 17.0.8 on Windows 7, Windows Server 2008 R2, W...
CVE-2013-1713
- EPSS 0.47%
- Veröffentlicht 07.08.2013 01:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 use an incorrect URI within unspecified comparisons during enforcement of the Same Origin Policy, wh...
CVE-2013-1714
- EPSS 1.08%
- Veröffentlicht 07.08.2013 01:55:04
- Zuletzt bearbeitet 29.04.2026 01:13:23
The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remo...
- EPSS 1.76%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allow remote attackers to cause a denial of service (memory c...
CVE-2013-1684
- EPSS 0.78%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::LookupMediaElementURITable function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote at...
CVE-2013-1685
- EPSS 0.78%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in the nsIDocument::GetRootElement function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary co...
- EPSS 2.45%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in the mozilla::ResetDir function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or caus...
CVE-2013-1687
- EPSS 2.64%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 29.04.2026 01:13:23
The System Only Wrapper (SOW) and Chrome Object Wrapper (COW) implementations in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly restrict XBL user-defined ...
CVE-2013-1690
- EPSS 47.06%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 22.04.2026 16:42:18
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause...