Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

nvd логотип

CVE-2013-1731

почти 13 лет назад

Untrusted search path vulnerability in the GL tracing functionality in Mozilla Firefox before 24.0 on Android allows attackers to execute arbitrary code via a Trojan horse .so file in a world-writable directory.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2013-1730

почти 13 лет назад

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbi ...

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2013-1730

почти 13 лет назад

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly handle movement of XBL-backed nodes between documents, which allows remote attackers to execute arbitrary code or cause a denial of service (JavaScript compartment mismatch, or assertion failure and application exit) via a crafted web site.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2013-1729

почти 13 лет назад

The WebGL implementation in Mozilla Firefox before 24.0, when NVIDIA g ...

CVSS2: 2.6
EPSS: Низкий
nvd логотип

CVE-2013-1729

почти 13 лет назад

The WebGL implementation in Mozilla Firefox before 24.0, when NVIDIA graphics drivers are used on Mac OS X, allows remote attackers to obtain desktop-screenshot data by reading from a CANVAS element.

CVSS2: 2.6
EPSS: Низкий
debian логотип

CVE-2013-1728

почти 13 лет назад

The IonMonkey JavaScript engine in Mozilla Firefox before 24.0, Thunde ...

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2013-1728

почти 13 лет назад

The IonMonkey JavaScript engine in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21, when Valgrind mode is used, does not properly initialize memory, which makes it easier for remote attackers to obtain sensitive information via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2013-1727

почти 13 лет назад

Mozilla Firefox before 24.0 on Android allows attackers to bypass the ...

CVSS2: 4
EPSS: Низкий
nvd логотип

CVE-2013-1727

почти 13 лет назад

Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by using a symlink in conjunction with a file: URL for a local file.

CVSS2: 4
EPSS: Низкий
debian логотип

CVE-2013-1726

почти 13 лет назад

Mozilla Updater in Mozilla Firefox before 24.0, Firefox ESR 17.x befor ...

CVSS2: 6.2
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2013-1731

Untrusted search path vulnerability in the GL tracing functionality in Mozilla Firefox before 24.0 on Android allows attackers to execute arbitrary code via a Trojan horse .so file in a world-writable directory.

CVSS2: 6.8
2%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-1730

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbi ...

CVSS2: 6.8
2%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-1730

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly handle movement of XBL-backed nodes between documents, which allows remote attackers to execute arbitrary code or cause a denial of service (JavaScript compartment mismatch, or assertion failure and application exit) via a crafted web site.

CVSS2: 6.8
2%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-1729

The WebGL implementation in Mozilla Firefox before 24.0, when NVIDIA g ...

CVSS2: 2.6
1%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-1729

The WebGL implementation in Mozilla Firefox before 24.0, when NVIDIA graphics drivers are used on Mac OS X, allows remote attackers to obtain desktop-screenshot data by reading from a CANVAS element.

CVSS2: 2.6
1%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-1728

The IonMonkey JavaScript engine in Mozilla Firefox before 24.0, Thunde ...

CVSS2: 4.3
2%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-1728

The IonMonkey JavaScript engine in Mozilla Firefox before 24.0, Thunderbird before 24.0, and SeaMonkey before 2.21, when Valgrind mode is used, does not properly initialize memory, which makes it easier for remote attackers to obtain sensitive information via unspecified vectors.

CVSS2: 4.3
2%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-1727

Mozilla Firefox before 24.0 on Android allows attackers to bypass the ...

CVSS2: 4
5%
Низкий
почти 13 лет назад
nvd логотип
CVE-2013-1727

Mozilla Firefox before 24.0 on Android allows attackers to bypass the Same Origin Policy, and consequently conduct cross-site scripting (XSS) attacks or obtain password or cookie information, by using a symlink in conjunction with a file: URL for a local file.

CVSS2: 4
5%
Низкий
почти 13 лет назад
debian логотип
CVE-2013-1726

Mozilla Updater in Mozilla Firefox before 24.0, Firefox ESR 17.x befor ...

CVSS2: 6.2
0%
Низкий
почти 13 лет назад

Уязвимостей на страницу


Поделиться