Mozilla

Thunderbird

1713 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 10.29%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via unk...

  • EPSS 8.43%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via unk...

  • EPSS 6.8%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allow remote attackers to execute arbitrary code via an XUL document that includes a script from a chrome: URI that points to a fastload file, related to t...

  • EPSS 6.39%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The mozIJSSubScriptLoader.LoadScript function in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 does not apply XPCNativeWrappers to scripts loaded from (1) file: URIs, (2) data: URIs, or (3) certain non...

  • EPSS 0.92%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 on Mac OS X allow remote attackers to bypass the Same Origin Policy and create arbitrary socket connections via a crafted Java applet, related to the Java Embedding Plugin (JEP) and Java Liv...

  • EPSS 2.08%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not properly escape HTML in file:// URLs in directory listings, which allows remote attackers to conduct cross-site scripting (XSS) attacks or have unspecified other impact via a crafted ...

  • EPSS 24.18%
  • Veröffentlicht 07.07.2008 23:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The block reflow implementation in Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and SeaMonkey before 1.1.10 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an image whose di...

  • EPSS 9.52%
  • Veröffentlicht 19.06.2008 21:41:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.16 and 3.x before 3.0.1, Thunderbird before 2.0.0.16, and SeaMonkey before 1.1.11 use an incorrect integer data type as a CSS object reference counter in the CSSValue array (aka nsCSSValue:Array) data structure, which all...

  • EPSS 17.01%
  • Veröffentlicht 17.04.2008 19:05:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. ...

  • EPSS 24.82%
  • Veröffentlicht 27.03.2008 10:44:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allows remote attackers to execute arbitrary code via "XPCNativeWrapper pollution."