Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fwxw-xrff-9f5q

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

EPSS

Процентиль: 63%
0.01136
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
почти 15 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

redhat
больше 14 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

nvd
почти 15 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

debian
почти 15 лет назад

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey b ...

EPSS

Процентиль: 63%
0.01136
Низкий

Дефекты

CWE-20