Описание
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "Load Images" enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a message that is loaded when the user views, forwards, or replies to the original message.
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "Load Images" enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a message that is loaded when the user views, forwards, or replies to the original message.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2006-4570
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28962
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10892
- http://secunia.com/advisories/21915
- http://secunia.com/advisories/21916
- http://secunia.com/advisories/21939
- http://secunia.com/advisories/21940
- http://secunia.com/advisories/22036
- http://secunia.com/advisories/22055
- http://secunia.com/advisories/22056
- http://secunia.com/advisories/22074
- http://secunia.com/advisories/22088
- http://secunia.com/advisories/22247
- http://secunia.com/advisories/22274
- http://secunia.com/advisories/22299
- http://secunia.com/advisories/22342
- http://secunia.com/advisories/22391
- http://security.gentoo.org/glsa/glsa-200610-01.xml
- http://security.gentoo.org/glsa/glsa-200610-04.xml
- http://securitytracker.com/id?1016866
- http://securitytracker.com/id?1016867
- http://www.debian.org/security/2006/dsa-1192
- http://www.mandriva.com/security/advisories?name=MDKSA-2006:169
- http://www.mozilla.org/security/announce/2006/mfsa2006-63.html
- http://www.novell.com/linux/security/advisories/2006_54_mozilla.html
- http://www.redhat.com/support/errata/RHSA-2006-0676.html
- http://www.redhat.com/support/errata/RHSA-2006-0677.html
- http://www.securityfocus.com/bid/20042
- http://www.ubuntu.com/usn/usn-350-1
- http://www.ubuntu.com/usn/usn-352-1
- http://www.ubuntu.com/usn/usn-361-1
- http://www.us.debian.org/security/2006/dsa-1191
EPSS
CVE ID
Связанные уязвимости
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "Load Images" enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a message that is loaded when the user views, forwards, or replies to the original message.
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "Load Images" enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a message that is loaded when the user views, forwards, or replies to the original message.
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "Load Images" enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a message that is loaded when the user views, forwards, or replies to the original message.
Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with "L ...
Уязвимости операционной системы Debian GNU/Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
EPSS