Логотип exploitDog
product: "firefox"
Консоль
Логотип exploitDog

exploitDog

product: "firefox"
Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

11511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614720232024202520262027

Недавние уязвимости Mozilla Firefox

Количество 15 425

debian логотип

CVE-2004-2227

около 21 года назад

Mozilla Firefox before 1.0 truncates long filenames in the file downlo ...

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2004-2225

около 21 года назад

Mozilla Firefox before 0.10.1 allows remote attackers to delete arbitr ...

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2004-0904

около 21 года назад

Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox befor ...

CVSS2: 10
EPSS: Средний
debian логотип

CVE-2004-1156

около 21 года назад

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attacker ...

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2004-2657

около 21 года назад

Mozilla Firefox 1.5.0.1, and possibly other versions, preserves some r ...

CVSS2: 1.7
EPSS: Низкий
ubuntu логотип

CVE-2004-1156

около 21 года назад

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2004-0867

около 21 года назад

Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. NOTE: it was later reported that 2.x is also affected.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2004-0867

около 21 года назад

Mozilla Firefox 0.9.2 allows web sites to set cookies for country-spec ...

CVSS2: 7.5
EPSS: Низкий
redhat логотип

CVE-2004-1156

около 21 года назад

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.

EPSS: Низкий
nvd логотип

CVE-2004-1639

больше 21 года назад

Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (application crash or memory consumption) via a large binary file with a .html extension.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2004-2227

Mozilla Firefox before 1.0 truncates long filenames in the file downlo ...

CVSS2: 5
1%
Низкий
около 21 года назад
debian логотип
CVE-2004-2225

Mozilla Firefox before 0.10.1 allows remote attackers to delete arbitr ...

CVSS2: 5
1%
Низкий
около 21 года назад
debian логотип
CVE-2004-0904

Integer overflow in the bitmap (BMP) decoder for Mozilla Firefox befor ...

CVSS2: 10
32%
Средний
около 21 года назад
debian логотип
CVE-2004-1156

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attacker ...

CVSS2: 4.3
1%
Низкий
около 21 года назад
debian логотип
CVE-2004-2657

Mozilla Firefox 1.5.0.1, and possibly other versions, preserves some r ...

CVSS2: 1.7
0%
Низкий
около 21 года назад
ubuntu логотип
CVE-2004-1156

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.

CVSS2: 4.3
1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-0867

Mozilla Firefox 0.9.2 allows web sites to set cookies for country-specific top-level domains, such as .ltd.uk, .plc.uk, and .sch.uk, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session. NOTE: it was later reported that 2.x is also affected.

CVSS2: 7.5
4%
Низкий
около 21 года назад
debian логотип
CVE-2004-0867

Mozilla Firefox 0.9.2 allows web sites to set cookies for country-spec ...

CVSS2: 7.5
4%
Низкий
около 21 года назад
redhat логотип
CVE-2004-1156

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.

1%
Низкий
около 21 года назад
nvd логотип
CVE-2004-1639

Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows remote attackers to cause a denial of service (application crash or memory consumption) via a large binary file with a .html extension.

CVSS2: 5
1%
Низкий
больше 21 года назад

Уязвимостей на страницу


Поделиться