Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-5337

Опубликовано: 21 окт. 2007
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 4.3

Описание

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page on the target server, in which the web page contains URIs with (1) smb: or (2) sftp: schemes that access other files from the server.

РелизСтатусПримечание
dapper

released

1.5.dfsg+1.5.0.14~prepatch071011b-0ubuntu1
devel

not-affected

edgy

released

2.0.0.8+0dfsg-0ubuntu0.6.10
feisty

released

2.0.0.8+1nobinonly-0ubuntu1
gutsy

released

2.0.0.8+2nobinonly-0ubuntu1
upstream

released

2.0.0.8

Показывать по

РелизСтатусПримечание
dapper

released

1.5.0.13+1.5.0.14b-0ubuntu0.6.06
edgy

released

1.5.0.13+1.5.0.14b-0ubuntu0.6.10
feisty

released

1.5.0.13+1.5.0.14b-0ubuntu0.7.04
upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

not-affected

gutsy

released

2.0.0.8~pre071022+nobinonly-0ubuntu0.7.10
upstream

released

2.0.0.8

Показывать по

EPSS

Процентиль: 79%
0.01383
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 17 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page on the target server, in which the web page contains URIs with (1) smb: or (2) sftp: schemes that access other files from the server.

nvd
больше 17 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page on the target server, in which the web page contains URIs with (1) smb: or (2) sftp: schemes that access other files from the server.

debian
больше 17 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when runnin ...

github
около 3 лет назад

Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when running on Linux systems with gnome-vfs support, might allow remote attackers to read arbitrary files on SSH/sftp servers that accept key authentication by creating a web page on the target server, in which the web page contains URIs with (1) smb: or (2) sftp: schemes that access other files from the server.

oracle-oval
больше 17 лет назад

ELSA-2007-0979: Critical: firefox security update (CRITICAL)

EPSS

Процентиль: 79%
0.01383
Низкий

4.3 Medium

CVSS2