Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 296

ubuntu логотип

CVE-2007-0779

больше 19 лет назад

GUI overlay vulnerability in Mozilla Firefox 1.5.x before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 allows remote attackers to spoof certain user interface elements, such as the host name or security indicators, via the CSS3 hotspot property with a large, transparent, custom cursor.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2007-0995

больше 19 лет назад

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 ignores trailing invalid HTML characters in attribute names, which allows remote attackers to bypass content filters that use regular expressions.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2007-0777

больше 19 лет назад

The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain vectors that trigger memory corruption.

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2007-0776

больше 19 лет назад

Heap-based buffer overflow in the _cairo_pen_init function in Mozilla Firefox 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remote attackers to execute arbitrary code via a large stroke-width attribute in the clipPath element in an SVG file.

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2007-0775

больше 19 лет назад

Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allow remote attackers to cause a denial of service (crash) and potentially execute arbitrary code via certain vectors.

CVSS2: 3.7
EPSS: Низкий
debian логотип

CVE-2007-0777

больше 19 лет назад

The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x befor ...

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2007-0995

больше 19 лет назад

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey ...

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2007-0776

больше 19 лет назад

Heap-based buffer overflow in the _cairo_pen_init function in Mozilla ...

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2007-0775

больше 19 лет назад

Multiple unspecified vulnerabilities in the layout engine in Mozilla F ...

CVSS2: 3.7
EPSS: Низкий
ubuntu логотип

CVE-2007-0995

больше 19 лет назад

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 ignores trailing invalid HTML characters in attribute names, which allows remote attackers to bypass content filters that use regular expressions.

CVSS2: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
ubuntu логотип
CVE-2007-0779

GUI overlay vulnerability in Mozilla Firefox 1.5.x before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 allows remote attackers to spoof certain user interface elements, such as the host name or security indicators, via the CSS3 hotspot property with a large, transparent, custom cursor.

CVSS2: 6.4
2%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-0995

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 ignores trailing invalid HTML characters in attribute names, which allows remote attackers to bypass content filters that use regular expressions.

CVSS2: 4.3
2%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-0777

The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via certain vectors that trigger memory corruption.

CVSS2: 9.3
8%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-0776

Heap-based buffer overflow in the _cairo_pen_init function in Mozilla Firefox 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remote attackers to execute arbitrary code via a large stroke-width attribute in the clipPath element in an SVG file.

CVSS2: 9.3
7%
Низкий
больше 19 лет назад
nvd логотип
CVE-2007-0775

Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allow remote attackers to cause a denial of service (crash) and potentially execute arbitrary code via certain vectors.

CVSS2: 3.7
1%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-0777

The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x befor ...

CVSS2: 9.3
8%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-0995

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey ...

CVSS2: 4.3
2%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-0776

Heap-based buffer overflow in the _cairo_pen_init function in Mozilla ...

CVSS2: 9.3
7%
Низкий
больше 19 лет назад
debian логотип
CVE-2007-0775

Multiple unspecified vulnerabilities in the layout engine in Mozilla F ...

CVSS2: 3.7
1%
Низкий
больше 19 лет назад
ubuntu логотип
CVE-2007-0995

Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 ignores trailing invalid HTML characters in attribute names, which allows remote attackers to bypass content filters that use regular expressions.

CVSS2: 4.3
2%
Низкий
больше 19 лет назад

Уязвимостей на страницу


Поделиться