Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-7187

Опубликовано: 05 нояб. 2015
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3

Описание

The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via inline JavaScript code that is executed within a third-party extension.

РелизСтатусПримечание
devel

released

42.0+build2-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [42.0+build2-0ubuntu0.14.04.1]]
precise

released

42.0+build2-0ubuntu0.12.04.1
trusty

released

42.0+build2-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [42.0+build2-0ubuntu0.14.04.1]
upstream

released

42.0
vivid

released

42.0+build2-0ubuntu0.15.04.1
wily

released

42.0+build2-0ubuntu0.15.10.1

Показывать по

4.3 Medium

CVSS2

Связанные уязвимости

redhat
больше 10 лет назад

The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via inline JavaScript code that is executed within a third-party extension.

nvd
больше 10 лет назад

The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via inline JavaScript code that is executed within a third-party extension.

debian
больше 10 лет назад

The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: ...

github
больше 3 лет назад

The Add-on SDK in Mozilla Firefox before 42.0 misinterprets a "script: false" panel setting, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via inline JavaScript code that is executed within a third-party extension.

fstec
больше 10 лет назад

Уязвимость браузера Firefox, позволяющая нарушителю провести межсайтовое выполнение сценариев

4.3 Medium

CVSS2

Уязвимость CVE-2015-7187