Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2008-6961

Опубликовано: 13 авг. 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1.1.13, when JavaScript is enabled in mail, allows remote attackers to obtain sensitive information about the recipient, or comments in forwarded mail, via script that reads the (1) .documentURI or (2) .textContent DOM properties.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

hardy

DNE

intrepid

DNE

jaunty

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

1.1.15+nobinonly-0ubuntu2
hardy

released

1.1.15+nobinonly-0ubuntu0.8.04.2
intrepid

released

1.1.15+nobinonly-0ubuntu0.8.10.2
jaunty

not-affected

1.1.15+nobinonly-0ubuntu2
upstream

released

1.1.13

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

2.0.0.22+build1+nobinonly-0ubuntu3
hardy

released

2.0.0.22+build1+nobinonly-0ubuntu0.8.04.1
intrepid

released

2.0.0.22+build1+nobinonly-0ubuntu0.8.10.1
jaunty

released

2.0.0.22+build1+nobinonly-0ubuntu0.9.04.1
upstream

released

2.0.0.18

Показывать по

Ссылки на источники

EPSS

Процентиль: 70%
0.00651
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
больше 16 лет назад

mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1.1.13, when JavaScript is enabled in mail, allows remote attackers to obtain sensitive information about the recipient, or comments in forwarded mail, via script that reads the (1) .documentURI or (2) .textContent DOM properties.

debian
больше 16 лет назад

mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1 ...

github
больше 3 лет назад

mailnews in Mozilla Thunderbird before 2.0.0.18 and SeaMonkey before 1.1.13, when JavaScript is enabled in mail, allows remote attackers to obtain sensitive information about the recipient, or comments in forwarded mail, via script that reads the (1) .documentURI or (2) .textContent DOM properties.

EPSS

Процентиль: 70%
0.00651
Низкий

4.3 Medium

CVSS2

Уязвимость CVE-2008-6961