Логотип exploitDog
bind:"BDU:2014-00004" OR bind:"CVE-2012-1944"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2014-00004" OR bind:"CVE-2012-1944"

Количество 8

Количество 8

fstec логотип

BDU:2014-00004

больше 13 лет назад

Уязвимость браузера Firefox, позволяющая злоумышленнику выполнить межсайтовый скриптинг

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2012-1944

больше 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2012-1944

больше 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2012-1944

больше 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2012-1944

больше 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4. ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-mpv9-qhv2-p7fj

больше 3 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

EPSS: Низкий
oracle-oval логотип

ELSA-2012-0715

больше 13 лет назад

ELSA-2012-0715: thunderbird security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2012-0710

больше 13 лет назад

ELSA-2012-0710: firefox security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2014-00004

Уязвимость браузера Firefox, позволяющая злоумышленнику выполнить межсайтовый скриптинг

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
ubuntu логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
redhat логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4. ...

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
github логотип
GHSA-mpv9-qhv2-p7fj

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

1%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2012-0715

ELSA-2012-0715: thunderbird security update (CRITICAL)

больше 13 лет назад
oracle-oval логотип
ELSA-2012-0710

ELSA-2012-0710: firefox security update (CRITICAL)

больше 13 лет назад

Уязвимостей на страницу