Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

fstec логотип

BDU:2016-01554

около 10 лет назад

Уязвимость браузеров Firefox и Firefox ESR, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

CVSS2: 6.8
EPSS: Низкий
fstec логотип

BDU:2016-01548

около 10 лет назад

Уязвимость браузера Firefox, позволяющая нарушителю получить доступ к полному списку отключенных плагинов

CVSS2: 4.3
EPSS: Низкий
fstec логотип

BDU:2016-01546

около 10 лет назад

Уязвимость набора библиотек Network Security Services и браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

CVSS2: 9.3
EPSS: Низкий
fstec логотип

BDU:2016-01552

около 10 лет назад

Уязвимость браузеров Firefox и Firefox ESR, позволяющая нарушителю повысить свои привилегии

CVSS2: 6.9
EPSS: Низкий
redhat логотип

CVE-2016-2831

около 10 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-2822

около 10 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to spoof the address bar via a SELECT element with a persistent menu.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-2821

около 10 лет назад

Use-after-free vulnerability in the mozilla::dom::Element class in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2, when contenteditable mode is enabled, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by triggering deletion of DOM elements that were created in the editor.

CVSS2: 5.1
EPSS: Низкий
redhat логотип

CVE-2016-2819

около 10 лет назад

Heap-based buffer overflow in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via foreign-context HTML5 fragments, as demonstrated by fragments within an SVG element.

CVSS2: 6.8
EPSS: Средний
redhat логотип

CVE-2016-2818

около 10 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2016-2828

около 10 лет назад

Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via WebGL content that triggers texture access after destruction of the texture's recycle pool.

CVSS2: 5.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
fstec логотип
BDU:2016-01554

Уязвимость браузеров Firefox и Firefox ESR, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

CVSS2: 6.8
2%
Низкий
около 10 лет назад
fstec логотип
BDU:2016-01548

Уязвимость браузера Firefox, позволяющая нарушителю получить доступ к полному списку отключенных плагинов

CVSS2: 4.3
1%
Низкий
около 10 лет назад
fstec логотип
BDU:2016-01546

Уязвимость набора библиотек Network Security Services и браузера Firefox, позволяющая нарушителю вызвать отказ в обслуживании или оказать другое воздействие

CVSS2: 9.3
3%
Низкий
около 10 лет назад
fstec логотип
BDU:2016-01552

Уязвимость браузеров Firefox и Firefox ESR, позволяющая нарушителю повысить свои привилегии

CVSS2: 6.9
0%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-2831

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

CVSS2: 4.3
1%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-2822

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to spoof the address bar via a SELECT element with a persistent menu.

CVSS2: 4.3
2%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-2821

Use-after-free vulnerability in the mozilla::dom::Element class in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2, when contenteditable mode is enabled, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by triggering deletion of DOM elements that were created in the editor.

CVSS2: 5.1
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-2819

Heap-based buffer overflow in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via foreign-context HTML5 fragments, as demonstrated by fragments within an SVG element.

CVSS2: 6.8
24%
Средний
около 10 лет назад
redhat логотип
CVE-2016-2818

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 6.8
4%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-2828

Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via WebGL content that triggers texture access after destruction of the texture's recycle pool.

CVSS2: 5.1
3%
Низкий
около 10 лет назад

Уязвимостей на страницу


Поделиться