Логотип exploitDog
product: "firefox"
Консоль
Логотип exploitDog

exploitDog

product: "firefox"
Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

11511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614720232024202520262027

Недавние уязвимости Mozilla Firefox

Количество 15 501

ubuntu логотип

CVE-2009-3274

больше 16 лет назад

Mozilla Firefox 3.6a1, 3.5.3, 3.5.2, and earlier 3.5.x versions, and 3.0.14 and earlier 2.x and 3.x versions, on Linux uses a predictable /tmp pathname for files selected from the Downloads window, which allows local users to replace an arbitrary downloaded file by placing a file in a /tmp location before the download occurs, related to the Download Manager component. NOTE: some of these details are obtained from third party information.

CVSS2: 4.4
EPSS: Низкий
nvd логотип

CVE-2008-7244

больше 16 лет назад

Mozilla Firefox 3.0.1 and earlier allows remote attackers to cause a denial of service (browser hang) by calling the window.print function in a loop, aka a "printing DoS attack," possibly a related issue to CVE-2009-0821.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2008-7244

больше 16 лет назад

Mozilla Firefox 3.0.1 and earlier allows remote attackers to cause a d ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2008-7244

больше 16 лет назад

Mozilla Firefox 3.0.1 and earlier allows remote attackers to cause a denial of service (browser hang) by calling the window.print function in a loop, aka a "printing DoS attack," possibly a related issue to CVE-2009-0821.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-3079

больше 16 лет назад

Unspecified vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, allows remote attackers to execute arbitrary JavaScript with chrome privileges via vectors involving an object, the FeedWriter, and the BrowserFeedWriter.

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2009-3079

больше 16 лет назад

Unspecified vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2009-3078

больше 16 лет назад

Visual truncation vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, allows remote attackers to trigger a vertical scroll and spoof URLs via unspecified Unicode characters with a tall line-height property.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2009-3078

больше 16 лет назад

Visual truncation vulnerability in Mozilla Firefox before 3.0.14, and ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2009-3077

больше 16 лет назад

Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, does not properly manage pointers for the columns (aka TreeColumns) of a XUL tree element, which allows remote attackers to execute arbitrary code via a crafted HTML document, related to a "dangling pointer vulnerability."

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2009-3077

больше 16 лет назад

Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, does not proper ...

CVSS2: 9.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2009-3274

Mozilla Firefox 3.6a1, 3.5.3, 3.5.2, and earlier 3.5.x versions, and 3.0.14 and earlier 2.x and 3.x versions, on Linux uses a predictable /tmp pathname for files selected from the Downloads window, which allows local users to replace an arbitrary downloaded file by placing a file in a /tmp location before the download occurs, related to the Download Manager component. NOTE: some of these details are obtained from third party information.

CVSS2: 4.4
0%
Низкий
больше 16 лет назад
nvd логотип
CVE-2008-7244

Mozilla Firefox 3.0.1 and earlier allows remote attackers to cause a denial of service (browser hang) by calling the window.print function in a loop, aka a "printing DoS attack," possibly a related issue to CVE-2009-0821.

CVSS2: 5
2%
Низкий
больше 16 лет назад
debian логотип
CVE-2008-7244

Mozilla Firefox 3.0.1 and earlier allows remote attackers to cause a d ...

CVSS2: 5
2%
Низкий
больше 16 лет назад
ubuntu логотип
CVE-2008-7244

Mozilla Firefox 3.0.1 and earlier allows remote attackers to cause a denial of service (browser hang) by calling the window.print function in a loop, aka a "printing DoS attack," possibly a related issue to CVE-2009-0821.

CVSS2: 5
2%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-3079

Unspecified vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, allows remote attackers to execute arbitrary JavaScript with chrome privileges via vectors involving an object, the FeedWriter, and the BrowserFeedWriter.

CVSS2: 10
2%
Низкий
больше 16 лет назад
debian логотип
CVE-2009-3079

Unspecified vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x ...

CVSS2: 10
2%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-3078

Visual truncation vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, allows remote attackers to trigger a vertical scroll and spoof URLs via unspecified Unicode characters with a tall line-height property.

CVSS2: 5
2%
Низкий
больше 16 лет назад
debian логотип
CVE-2009-3078

Visual truncation vulnerability in Mozilla Firefox before 3.0.14, and ...

CVSS2: 5
2%
Низкий
больше 16 лет назад
nvd логотип
CVE-2009-3077

Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, does not properly manage pointers for the columns (aka TreeColumns) of a XUL tree element, which allows remote attackers to execute arbitrary code via a crafted HTML document, related to a "dangling pointer vulnerability."

CVSS2: 9.3
5%
Низкий
больше 16 лет назад
debian логотип
CVE-2009-3077

Mozilla Firefox before 3.0.14, and 3.5.x before 3.5.3, does not proper ...

CVSS2: 9.3
5%
Низкий
больше 16 лет назад

Уязвимостей на страницу


Поделиться