Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 208
CVE-2005-2269
Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing").
CVE-2005-2260
The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.
CVE-2005-2264
Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.
CVE-2005-2268
Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associa ...
CVE-2005-2267
Firefox before 1.0.5 allows remote attackers to steal information and ...
CVE-2005-2269
Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does no ...
CVE-2005-2264
Firefox before 1.0.5 allows remote attackers to steal sensitive inform ...
CVE-2005-2265
Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 ...
CVE-2005-2263
The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla ...
CVE-2005-2266
Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2005-2269 Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does not properly verify the associated types of DOM node names within the context of their namespaces, which allows remote attackers to modify certain tag properties, possibly leading to execution of arbitrary script or code, as demonstrated using an XHTML document with IMG tags with custom properties ("XHTML node spoofing"). | CVSS2: 7.5 | 6% Низкий | около 21 года назад | |
CVE-2005-2260 The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user. | CVSS2: 7.5 | 3% Низкий | около 21 года назад | |
CVE-2005-2264 Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL. | CVSS2: 7.5 | 3% Низкий | около 21 года назад | |
CVE-2005-2268 Firefox before 1.0.5 and Mozilla before 1.7.9 does not clearly associa ... | CVSS2: 2.6 | 3% Низкий | около 21 года назад | |
CVE-2005-2267 Firefox before 1.0.5 allows remote attackers to steal information and ... | CVSS2: 7.5 | 4% Низкий | около 21 года назад | |
CVE-2005-2269 Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 does no ... | CVSS2: 7.5 | 6% Низкий | около 21 года назад | |
CVE-2005-2264 Firefox before 1.0.5 allows remote attackers to steal sensitive inform ... | CVSS2: 7.5 | 3% Низкий | около 21 года назад | |
CVE-2005-2265 Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 ... | CVSS2: 5 | 68% Средний | около 21 года назад | |
CVE-2005-2263 The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla ... | CVSS2: 5 | 3% Низкий | около 21 года назад | |
CVE-2005-2266 Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to ... | CVSS2: 5 | 2% Низкий | около 21 года назад |
Уязвимостей на страницу