Логотип exploitDog
product: "firefox"
Консоль
Логотип exploitDog

exploitDog

product: "firefox"
Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

11511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614720232024202520262027

Недавние уязвимости Mozilla Firefox

Количество 15 501

debian логотип

CVE-2005-2264

больше 20 лет назад

Firefox before 1.0.5 allows remote attackers to steal sensitive inform ...

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-2263

больше 20 лет назад

The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla ...

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2005-2265

больше 20 лет назад

Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 ...

CVSS2: 5
EPSS: Высокий
debian логотип

CVE-2005-2260

больше 20 лет назад

The browser user interface in Firefox before 1.0.5, Mozilla before 1.7 ...

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-2270

больше 20 лет назад

Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone ...

CVSS2: 7.5
EPSS: Средний
debian логотип

CVE-2005-2267

больше 20 лет назад

Firefox before 1.0.5 allows remote attackers to steal information and ...

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2005-2261

больше 20 лет назад

Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, ...

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-2264

больше 20 лет назад

Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.

CVSS2: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2005-2263

больше 20 лет назад

The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.

CVSS2: 5
EPSS: Низкий
ubuntu логотип

CVE-2005-2267

больше 20 лет назад

Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2005-2264

Firefox before 1.0.5 allows remote attackers to steal sensitive inform ...

CVSS2: 7.5
3%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-2263

The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla ...

CVSS2: 5
5%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-2265

Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 ...

CVSS2: 5
82%
Высокий
больше 20 лет назад
debian логотип
CVE-2005-2260

The browser user interface in Firefox before 1.0.5, Mozilla before 1.7 ...

CVSS2: 7.5
4%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-2270

Firefox before 1.0.5 and Mozilla before 1.7.9 does not properly clone ...

CVSS2: 7.5
29%
Средний
больше 20 лет назад
debian логотип
CVE-2005-2267

Firefox before 1.0.5 allows remote attackers to steal information and ...

CVSS2: 7.5
5%
Низкий
больше 20 лет назад
debian логотип
CVE-2005-2261

Firefox before 1.0.5, Thunderbird before 1.0.5, Mozilla before 1.7.9, ...

CVSS2: 7.5
5%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2005-2264

Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.

CVSS2: 7.5
3%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2005-2263

The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.

CVSS2: 5
5%
Низкий
больше 20 лет назад
ubuntu логотип
CVE-2005-2267

Firefox before 1.0.5 allows remote attackers to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.

CVSS2: 7.5
5%
Низкий
больше 20 лет назад

Уязвимостей на страницу


Поделиться