Mozilla

Thunderbird

1713 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 2%
  • Veröffentlicht 08.02.2008 22:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8 allows remote attackers to execute script outside of the sandbox and conduct cross-site scripting (XSS) attacks via multiple vectors including the XMLDocument.lo...

  • EPSS 38.66%
  • Veröffentlicht 08.02.2008 22:00:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Directory traversal vulnerability in Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and SeaMonkey before 1.1.8, when using "flat" addons, allows remote attackers to read arbitrary Javascript, image, and stylesheet files via the chrome:...

  • EPSS 20.3%
  • Veröffentlicht 21.10.2007 19:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple vulnerabilities in Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allow remote attackers to cause a denial of service (crash) via crafted HTML that triggers memory corruption or assert errors.

  • EPSS 14.85%
  • Veröffentlicht 21.10.2007 19:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple vulnerabilities in the Javascript engine in Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allow remote attackers to cause a denial of service (crash) via crafted HTML that triggers memory corruption.

  • EPSS 9.26%
  • Veröffentlicht 12.09.2007 20:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and SeaMonkey before 1.1.5 allows remote attackers to execute arbitrary commands via a (1) mailto, (2) nntp, (3) news, or (4) snews URI with invalid "%" encoding, related to improper file ty...

Exploit
  • EPSS 21.7%
  • Veröffentlicht 08.08.2007 01:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox 2.0.0.5, Thunderbird 2.0.0.5 and before 1.5.0.13, and SeaMonkey 1.1.3 allows remote attackers to conduct cross-site scripting (XSS) attacks with chrome privileges via an addon that inserts a (1) javascript: or (2) data: link into an a...

  • EPSS 44.11%
  • Veröffentlicht 08.08.2007 01:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x before 2.0.0.6, and SeaMonkey before 1.1.4 allow remote attackers to execute arbitrary commands via certain vectors associated with launching "a file handling program based on the fi...

  • EPSS 0.27%
  • Veröffentlicht 27.07.2007 22:30:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Argument injection vulnerability in Mozilla Firefox before 2.0.0.5, when running on systems with Thunderbird 1.5 installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands ...

  • EPSS 9.9%
  • Veröffentlicht 18.07.2007 17:30:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 2.0.0.5 and Thunderbird before 2.0.0.5 allow remote attackers to cause a denial of service (crash) via unspecified vectors that trigger memory corruption.

  • EPSS 9.06%
  • Veröffentlicht 18.07.2007 17:30:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 2.0.0.5 and Thunderbird before 2.0.0.5 allow remote attackers to cause a denial of service (crash) via unspecified vectors that trigger memory corruption.