Логотип exploitDog
bind:CVE-2012-4207
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-4207

Количество 7

Количество 7

ubuntu логотип

CVE-2012-4207

почти 13 лет назад

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2012-4207

почти 13 лет назад

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2012-4207

почти 13 лет назад

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2012-4207

почти 13 лет назад

The HZ-GB-2312 character-set implementation in Mozilla Firefox before ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-jprg-6jgr-c6j9

больше 3 лет назад

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

EPSS: Низкий
oracle-oval логотип

ELSA-2012-1483

почти 13 лет назад

ELSA-2012-1483: thunderbird security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2012-1482

почти 13 лет назад

ELSA-2012-1482: firefox security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-4207

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

CVSS2: 4.3
2%
Низкий
почти 13 лет назад
redhat логотип
CVE-2012-4207

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

CVSS2: 4.3
2%
Низкий
почти 13 лет назад
nvd логотип
CVE-2012-4207

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

CVSS2: 4.3
2%
Низкий
почти 13 лет назад
debian логотип
CVE-2012-4207

The HZ-GB-2312 character-set implementation in Mozilla Firefox before ...

CVSS2: 4.3
2%
Низкий
почти 13 лет назад
github логотип
GHSA-jprg-6jgr-c6j9

The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 does not properly handle a ~ (tilde) character in proximity to a chunk delimiter, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted document.

2%
Низкий
больше 3 лет назад
oracle-oval логотип
ELSA-2012-1483

ELSA-2012-1483: thunderbird security update (CRITICAL)

почти 13 лет назад
oracle-oval логотип
ELSA-2012-1482

ELSA-2012-1482: firefox security update (CRITICAL)

почти 13 лет назад

Уязвимостей на страницу