CVE-2010-3169
- EPSS 3.23%
- Veröffentlicht 09.09.2010 19:00:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 allow remote attackers to cause a denial of service (memor...
CVE-2010-3131
- EPSS 10.23%
- Veröffentlicht 26.08.2010 18:36:35
- Zuletzt bearbeitet 29.04.2026 01:13:23
Untrusted search path vulnerability in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 on Windows XP allows local users, and possibly remote attackers, to execute arbit...
CVE-2010-2752
- EPSS 7.99%
- Veröffentlicht 30.07.2010 20:30:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in an array class in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code by placing many Casc...
CVE-2010-2753
- EPSS 4.09%
- Veröffentlicht 30.07.2010 20:30:02
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code via a large selection attribute in a X...
CVE-2010-1207
- EPSS 0.42%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Mozilla Firefox before 3.6.7 and Thunderbird before 3.1.1 do not properly implement read restrictions for CANVAS elements, which allows remote attackers to obtain sensitive cross-origin information via vectors involving reference retention and node d...
CVE-2010-1210
- EPSS 0.36%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
intl/uconv/util/nsUnicodeDecodeHelper.cpp in Mozilla Firefox before 3.6.7 and Thunderbird before 3.1.1 inserts a U+FFFD sequence into text in certain circumstances involving undefined positions, which might make it easier for remote attackers to cond...
CVE-2010-1211
- EPSS 3.87%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allow remote attackers to cause a denial of se...
CVE-2010-1212
- EPSS 2.03%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via v...
CVE-2010-1213
- EPSS 0.19%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
The importScripts Web Worker method in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 does not verify that content is valid JavaScript code, which allows r...
CVE-2010-1215
- EPSS 0.48%
- Veröffentlicht 30.07.2010 20:30:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 do not properly implement access to a content object through a SafeJSObjectWrapper (aka SJOW) wrapper, which allows remote attackers to execute arbitrary JavaScript code with chrom...