Логотип exploitDog
product: "firefox"
Консоль
Логотип exploitDog

exploitDog

product: "firefox"
Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

11511611711811912012112212312412512612712812913013113213313413513613713813914014114214314420232024202520262027

Недавние уязвимости Mozilla Firefox

Количество 15 151

debian логотип

CVE-2008-2014

больше 17 лет назад

Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial o ...

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2008-2014

больше 17 лет назад

Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in an infinite loop.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2007-6715

больше 17 лет назад

Mozilla Firefox allows remote attackers to cause a denial of service (crash) via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2007-6715

больше 17 лет назад

Mozilla Firefox allows remote attackers to cause a denial of service ( ...

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2007-6715

больше 17 лет назад

Mozilla Firefox allows remote attackers to cause a denial of service (crash) via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2008-1380

больше 17 лет назад

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.

CVSS2: 9.3
EPSS: Средний
debian логотип

CVE-2008-1380

больше 17 лет назад

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird ...

CVSS2: 9.3
EPSS: Средний
ubuntu логотип

CVE-2008-1380

больше 17 лет назад

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.

CVSS2: 9.3
EPSS: Средний
redhat логотип

CVE-2008-1380

больше 17 лет назад

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.

EPSS: Средний
nvd логотип

CVE-2008-1240

больше 17 лет назад

LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2008-2014

Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial o ...

CVSS2: 5
1%
Низкий
больше 17 лет назад
ubuntu логотип
CVE-2008-2014

Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in an infinite loop.

CVSS2: 5
1%
Низкий
больше 17 лет назад
nvd логотип
CVE-2007-6715

Mozilla Firefox allows remote attackers to cause a denial of service (crash) via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.

CVSS2: 4.3
1%
Низкий
больше 17 лет назад
debian логотип
CVE-2007-6715

Mozilla Firefox allows remote attackers to cause a denial of service ( ...

CVSS2: 4.3
1%
Низкий
больше 17 лет назад
ubuntu логотип
CVE-2007-6715

Mozilla Firefox allows remote attackers to cause a denial of service (crash) via crafted image, as demonstrated by the zzuf lol-firefox.gif test case.

CVSS2: 4.3
1%
Низкий
больше 17 лет назад
nvd логотип
CVE-2008-1380

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.

CVSS2: 9.3
19%
Средний
больше 17 лет назад
debian логотип
CVE-2008-1380

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird ...

CVSS2: 9.3
19%
Средний
больше 17 лет назад
ubuntu логотип
CVE-2008-1380

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.

CVSS2: 9.3
19%
Средний
больше 17 лет назад
redhat логотип
CVE-2008-1380

The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird before 2.0.0.14, and SeaMonkey before 1.1.10 allows remote attackers to cause a denial of service (garbage collector crash) and possibly have other impacts via a crafted web page. NOTE: this is due to an incorrect fix for CVE-2008-1237.

19%
Средний
больше 17 лет назад
nvd логотип
CVE-2008-1240

LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote attackers to access arbitrary ports on the local machine. NOTE: this is closely related to CVE-2008-1195.

CVSS2: 5
6%
Низкий
больше 17 лет назад

Уязвимостей на страницу


Поделиться