Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Количество 15 425
CVE-2004-2227
Mozilla Firefox before 1.0 truncates long filenames in the file downlo ...
CVE-2004-2225
Mozilla Firefox before 0.10.1 allows remote attackers to delete arbitr ...
CVE-2004-0904
Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox befor ...
CVE-2004-1156
Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attacker ...
CVE-2004-2657
Mozilla Firefox 1.5.0.1, and possibly other versions, preserves some r ...
CVE-2004-1156
Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.
CVE-2004-0867
Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. NOTE: it was later reported that 2.x is also affected.
CVE-2004-0867
Mozilla Firefox 0.9.2 allows web sites to set cookies for country-spec ...
CVE-2004-1156
Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.
CVE-2004-1639
Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (application crash or memory consumption) via a large binary file with a .html extension.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2004-2227 Mozilla Firefox before 1.0 truncates long filenames in the file downlo ... | CVSS2: 5 | 1% Низкий | около 21 года назад | |
CVE-2004-2225 Mozilla Firefox before 0.10.1 allows remote attackers to delete arbitr ... | CVSS2: 5 | 1% Низкий | около 21 года назад | |
CVE-2004-0904 Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox befor ... | CVSS2: 10 | 32% Средний | около 21 года назад | |
CVE-2004-1156 Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attacker ... | CVSS2: 4.3 | 1% Низкий | около 21 года назад | |
CVE-2004-2657 Mozilla Firefox 1.5.0.1, and possibly other versions, preserves some r ... | CVSS2: 1.7 | 0% Низкий | около 21 года назад | |
CVE-2004-1156 Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability. | CVSS2: 4.3 | 1% Низкий | около 21 года назад | |
CVE-2004-0867 Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. NOTE: it was later reported that 2.x is also affected. | CVSS2: 7.5 | 4% Низкий | около 21 года назад | |
CVE-2004-0867 Mozilla Firefox 0.9.2 allows web sites to set cookies for country-spec ... | CVSS2: 7.5 | 4% Низкий | около 21 года назад | |
CVE-2004-1156 Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability. | 1% Низкий | около 21 года назад | ||
CVE-2004-1639 Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (application crash or memory consumption) via a large binary file with a .html extension. | CVSS2: 5 | 1% Низкий | больше 21 года назад |
Уязвимостей на страницу