Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-1310

Опубликовано: 22 апр. 2009
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 4.3

Описание

Cross-site scripting (XSS) vulnerability in the MozSearch plugin implementation in Mozilla Firefox before 3.0.9 allows user-assisted remote attackers to inject arbitrary web script or HTML via a javascript: URI in the SearchForm element.

РелизСтатусПримечание
dapper

ignored

end of life
devel

not-affected

hardy

not-affected

intrepid

DNE

jaunty

DNE

karmic

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

DNE

gutsy

ignored

end of life, was needed
hardy

released

1.9.0.9+nobinonly-0ubuntu0.8.04.1
intrepid

released

1.9.0.9+nobinonly-0ubuntu0.8.10.1
jaunty

released

1.9.0.9+nobinonly-0ubuntu0.9.04.1
karmic

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

1.9.1.9+nobinonly-0ubuntu1
hardy

DNE

intrepid

DNE

jaunty

released

1.9.1.9+nobinonly-0ubuntu0.9.04.1
karmic

released

1.9.1.9+nobinonly-0ubuntu0.9.10.1
upstream

needs-triage

Показывать по

EPSS

Процентиль: 74%
0.0086
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

Cross-site scripting (XSS) vulnerability in the MozSearch plugin implementation in Mozilla Firefox before 3.0.9 allows user-assisted remote attackers to inject arbitrary web script or HTML via a javascript: URI in the SearchForm element.

nvd
около 16 лет назад

Cross-site scripting (XSS) vulnerability in the MozSearch plugin implementation in Mozilla Firefox before 3.0.9 allows user-assisted remote attackers to inject arbitrary web script or HTML via a javascript: URI in the SearchForm element.

debian
около 16 лет назад

Cross-site scripting (XSS) vulnerability in the MozSearch plugin imple ...

github
около 3 лет назад

Cross-site scripting (XSS) vulnerability in the MozSearch plugin implementation in Mozilla Firefox before 3.0.9 allows user-assisted remote attackers to inject arbitrary web script or HTML via a javascript: URI in the SearchForm element.

oracle-oval
около 16 лет назад

ELSA-2009-0436: firefox security update (CRITICAL)

EPSS

Процентиль: 74%
0.0086
Низкий

4.3 Medium

CVSS2