Логотип exploitDog
bind:"CVE-2011-3650" OR bind:"CVE-2011-3647" OR bind:"CVE-2011-3648"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2011-3650" OR bind:"CVE-2011-3647" OR bind:"CVE-2011-3648"

Количество 17

Количество 17

oracle-oval логотип

ELSA-2011-1439

почти 14 лет назад

ELSA-2011-1439: thunderbird security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2011-1437

почти 14 лет назад

ELSA-2011-1437: firefox security update (CRITICAL)

EPSS: Низкий
ubuntu логотип

CVE-2011-3650

почти 14 лет назад

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

CVSS2: 9.3
EPSS: Низкий
redhat логотип

CVE-2011-3650

почти 14 лет назад

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2011-3650

почти 14 лет назад

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2011-3650

почти 14 лет назад

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird befo ...

CVSS2: 9.3
EPSS: Низкий
github логотип

GHSA-3238-3xx2-28gw

больше 3 лет назад

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

EPSS: Низкий
ubuntu логотип

CVE-2011-3648

почти 14 лет назад

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2011-3648

почти 14 лет назад

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

CVSS2: 5.1
EPSS: Низкий
nvd логотип

CVE-2011-3648

почти 14 лет назад

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2011-3648

почти 14 лет назад

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6 ...

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2011-3647

почти 14 лет назад

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

CVSS2: 9.3
EPSS: Низкий
redhat логотип

CVE-2011-3647

почти 14 лет назад

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2011-3647

почти 14 лет назад

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2011-3647

почти 14 лет назад

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird ...

CVSS2: 9.3
EPSS: Низкий
github логотип

GHSA-jqqv-7cc8-34qh

больше 3 лет назад

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

EPSS: Низкий
github логотип

GHSA-gwgh-7847-2vj4

больше 3 лет назад

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2011-1439

ELSA-2011-1439: thunderbird security update (CRITICAL)

почти 14 лет назад
oracle-oval логотип
ELSA-2011-1437

ELSA-2011-1437: firefox security update (CRITICAL)

почти 14 лет назад
ubuntu логотип
CVE-2011-3650

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

CVSS2: 9.3
1%
Низкий
почти 14 лет назад
redhat логотип
CVE-2011-3650

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

CVSS2: 5.1
1%
Низкий
почти 14 лет назад
nvd логотип
CVE-2011-3650

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

CVSS2: 9.3
1%
Низкий
почти 14 лет назад
debian логотип
CVE-2011-3650

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird befo ...

CVSS2: 9.3
1%
Низкий
почти 14 лет назад
github логотип
GHSA-3238-3xx2-28gw

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that contain many functions, which allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via a crafted file that is accessed by debugging APIs, as demonstrated by Firebug.

1%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2011-3648

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

CVSS2: 4.3
0%
Низкий
почти 14 лет назад
redhat логотип
CVE-2011-3648

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

CVSS2: 5.1
0%
Низкий
почти 14 лет назад
nvd логотип
CVE-2011-3648

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

CVSS2: 4.3
0%
Низкий
почти 14 лет назад
debian логотип
CVE-2011-3648

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6 ...

CVSS2: 4.3
0%
Низкий
почти 14 лет назад
ubuntu логотип
CVE-2011-3647

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

CVSS2: 9.3
1%
Низкий
почти 14 лет назад
redhat логотип
CVE-2011-3647

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

CVSS2: 6.8
1%
Низкий
почти 14 лет назад
nvd логотип
CVE-2011-3647

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

CVSS2: 9.3
1%
Низкий
почти 14 лет назад
debian логотип
CVE-2011-3647

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird ...

CVSS2: 9.3
1%
Низкий
почти 14 лет назад
github логотип
GHSA-jqqv-7cc8-34qh

The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird before 3.1.6 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior, a related issue to CVE-2011-3004.

1%
Низкий
больше 3 лет назад
github логотип
GHSA-gwgh-7847-2vj4

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 allows remote attackers to inject arbitrary web script or HTML via crafted text with Shift JIS encoding.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу