- EPSS 2.48%
- Veröffentlicht 22.02.2010 13:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute ...
CVE-2010-0654
- EPSS 0.7%
- Veröffentlicht 18.02.2010 18:00:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 permit cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type ...
- EPSS 0.25%
- Veröffentlicht 29.01.2010 18:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Necko, as used in Thunderbird 3.0.1, SeaMonkey, and other applications, performs DNS prefetching even when the app type is APP_TYPE_MAIL or APP_TYPE_EDITOR, which makes it easier for remote attackers to determine the network location of the a...
- EPSS 0.23%
- Veröffentlicht 29.01.2010 18:30:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Necko, as used in Firefox, SeaMonkey, and other applications, performs DNS prefetching of domain names contained in links within local HTML documents, which makes it easier for remote attackers to determine the network location of the applica...
CVE-2009-3980
- EPSS 4.41%
- Veröffentlicht 17.12.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.6, SeaMonkey before 2.0.1, and Thunderbird allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execut...
CVE-2009-3981
- EPSS 4.65%
- Veröffentlicht 17.12.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Unspecified vulnerability in the browser engine in Mozilla Firefox before 3.0.16, SeaMonkey before 2.0.1, and Thunderbird allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...
CVE-2009-3982
- EPSS 8.29%
- Veröffentlicht 17.12.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox 3.5.x before 3.5.6, SeaMonkey before 2.0.1, and Thunderbird allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe...
CVE-2009-3983
- EPSS 0.66%
- Veröffentlicht 17.12.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, allows remote attackers to send authenticated requests to arbitrary applications by replaying the NTLM credentials of a browser user.
CVE-2009-3984
- EPSS 2.05%
- Veröffentlicht 17.12.2009 17:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey before 2.0.1, allows remote attackers to spoof an SSL indicator for an http URL or a file URL by setting document.location to an https URL corresponding to a site that responds with ...
CVE-2008-6961
- EPSS 0.65%
- Veröffentlicht 13.08.2009 16:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1.1.13, when JavaScript is enabled in mail, allows remote attackers to obtain sensitive information about the recipient, or comments in forwarded mail, via script that reads the (1)...