Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-1095

Опубликовано: 26 фев. 2007
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.8

Описание

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not properly implement JavaScript onUnload handlers, which allows remote attackers to run certain JavaScript code and access the location DOM hierarchy in the context of the next web site that is visited by a client.

РелизСтатусПримечание
dapper

released

1.5.dfsg+1.5.0.13~prepatch070731-0ubuntu1
devel

released

2.0.0.6+2-0ubuntu4
edgy

released

2.0.0.6+0dfsg-0ubuntu0.6.10
feisty

released

2.0.0.6+1-0ubuntu1
upstream

released

1.5.0.10 and 2.0.0.2

Показывать по

РелизСтатусПримечание
dapper

released

1.5.0.13+1.5.0.14b-0ubuntu0.6.06
edgy

released

1.5.0.13+1.5.0.14b-0ubuntu0.6.10
feisty

released

1.5.0.13+1.5.0.14b-0ubuntu0.7.04
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

gutsy

released

2.0.0.8~pre071022+nobinonly-0ubuntu0.7.10
upstream

released

2.0.0.8

Показывать по

EPSS

Процентиль: 86%
0.02969
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
больше 18 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not properly implement JavaScript onUnload handlers, which allows remote attackers to run certain JavaScript code and access the location DOM hierarchy in the context of the next web site that is visited by a client.

nvd
больше 18 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not properly implement JavaScript onUnload handlers, which allows remote attackers to run certain JavaScript code and access the location DOM hierarchy in the context of the next web site that is visited by a client.

debian
больше 18 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not prope ...

github
больше 3 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not properly implement JavaScript onUnload handlers, which allows remote attackers to run certain JavaScript code and access the location DOM hierarchy in the context of the next web site that is visited by a client.

oracle-oval
около 18 лет назад

ELSA-2007-0979: Critical: firefox security update (CRITICAL)

EPSS

Процентиль: 86%
0.02969
Низкий

6.8 Medium

CVSS2