CVE-2009-2542
- EPSS 1.18%
- Veröffentlicht 20.07.2009 18:30:01
- Zuletzt bearbeitet 09.04.2025 00:30:58
Netscape 6 and 8 allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.
- EPSS 1.96%
- Veröffentlicht 08.07.2008 23:41:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Mozilla 1.9 M8 and earlier, Mozilla Firefox 2 before 2.0.0.15, SeaMonkey 1.1.5 and other versions before 1.1.10, Netscape 9.0, and other Mozilla-based web browsers, when a user accepts an SSL server certificate on the basis of the CN domain name in t...
CVE-2007-4042
- EPSS 4.36%
- Veröffentlicht 27.07.2007 22:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Multiple argument injection vulnerabilities in Netscape Navigator 9 allow remote attackers to execute arbitrary commands via a NULL byte (%00) and shell metacharacters in a (1) mailto, (2) nntp, (3) news, (4) snews, or (5) telnet URI, a similar issue...
CVE-2007-3924
- EPSS 7.82%
- Veröffentlicht 21.07.2007 00:30:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Argument injection vulnerability in Microsoft Internet Explorer, when running on systems with Netscape installed and certain URIs registered, allows remote attackers to conduct cross-browser scripting attacks and execute arbitrary commands via shell ...
- EPSS 18.26%
- Veröffentlicht 10.03.2007 00:19:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
AcroPDF.DLL in Adobe Reader 8.0, when accessed from Mozilla Firefox, Netscape, or Opera, allows remote attackers to cause a denial of service (unspecified resource consumption) via a .pdf URL with an anchor identifier that begins with search= followe...
- EPSS 2.51%
- Veröffentlicht 24.11.2006 17:07:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The (1) Password Manager in Mozilla Firefox 2.0, and 1.5.0.8 and earlier; and the (2) Passcard Manager in Netscape 8.1.2 and possibly other versions, do not properly verify that an ACTION URL in a FORM element containing a password INPUT element matc...
CVE-2006-4253
- EPSS 32.81%
- Veröffentlicht 21.08.2006 20:04:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Concurrency vulnerability in Mozilla Firefox 1.5.0.6 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via multiple Javascript timed events that load a deeply nested XML file, followed by red...
- EPSS 6.91%
- Veröffentlicht 07.06.2006 10:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Mozilla Firefox 1.5.0.4, 2.0.x before 2.0.0.8, Mozilla Suite 1.7.13, Mozilla SeaMonkey 1.0.2 and other versions before 1.1.5, and Netscape 8.1 and earlier allow user-assisted remote attackers to read arbitrary files by tricking a user into typing the...
CVE-2006-2613
- EPSS 1.45%
- Veröffentlicht 26.05.2006 01:06:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Mozilla Suite 1.7.13, Mozilla Firefox 1.5.0.3 and possibly other versions before before 1.8.0, and Netscape 7.2 and 8.1, and possibly other versions and products, allows remote user-assisted attackers to obtain information such as the installation pa...
CVE-2006-1942
- EPSS 2.94%
- Veröffentlicht 20.04.2006 22:02:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Mozilla Firefox 1.5.0.2 and possibly other versions before 1.5.0.4, Netscape 8.1, 8.0.4, and 7.2, and K-Meleon 0.9.13 allows user-assisted remote attackers to open local files via a web page with an IMG element containing a SRC attribute with a non-i...