Логотип exploitDog
bind:"CVE-2021-23987" OR bind:"CVE-2021-23984" OR bind:"CVE-2021-23982" OR bind:"CVE-2021-23981"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2021-23987" OR bind:"CVE-2021-23984" OR bind:"CVE-2021-23982" OR bind:"CVE-2021-23981"

Количество 33

Количество 33

debian логотип

CVE-2021-23984

почти 5 лет назад

A malicious extension could have opened a popup window lacking an addr ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-5cpw-36f2-hgw7

больше 3 лет назад

A malicious extension could have opened a popup window lacking an address bar. The title of the popup lacking an address bar should not be fully controllable, but in this situation was. This could have been used to spoof a website and attempt to trick the user into providing credentials. This vulnerability affects Firefox ESR < 78.9, Thunderbird < 78.9, and Firefox < 87.

EPSS: Низкий
fstec логотип

BDU:2022-05941

почти 5 лет назад

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с неверным ограничением визуализируемых слоев или фреймов пользовательского интерфейса, позволяющая нарушителю проводить спуфинг-атаки

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2021-23982

почти 5 лет назад

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2021-23982

почти 5 лет назад

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2021-23982

почти 5 лет назад

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-23982

почти 5 лет назад

Using techniques that built on the slipstream research, a malicious we ...

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2021-23981

почти 5 лет назад

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2021-23981

почти 5 лет назад

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2021-23981

почти 5 лет назад

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2021-23981

почти 5 лет назад

A texture upload of a Pixel Buffer Object could have confused the WebG ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-hg4f-qgj6-3h4w

больше 3 лет назад

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Thunderbird < 78.9, and Firefox < 87.

EPSS: Низкий
github логотип

GHSA-6hwg-29mr-qgf8

больше 3 лет назад

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Thunderbird < 78.9, and Firefox < 87.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
debian логотип
CVE-2021-23984

A malicious extension could have opened a popup window lacking an addr ...

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
github логотип
GHSA-5cpw-36f2-hgw7

A malicious extension could have opened a popup window lacking an address bar. The title of the popup lacking an address bar should not be fully controllable, but in this situation was. This could have been used to spoof a website and attempt to trick the user into providing credentials. This vulnerability affects Firefox ESR < 78.9, Thunderbird < 78.9, and Firefox < 87.

0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-05941

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с неверным ограничением визуализируемых слоев или фреймов пользовательского интерфейса, позволяющая нарушителю проводить спуфинг-атаки

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
ubuntu логотип
CVE-2021-23982

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2021-23982

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 6.1
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-23982

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
debian логотип
CVE-2021-23982

Using techniques that built on the slipstream research, a malicious we ...

CVSS3: 6.5
0%
Низкий
почти 5 лет назад
ubuntu логотип
CVE-2021-23981

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 8.1
0%
Низкий
почти 5 лет назад
redhat логотип
CVE-2021-23981

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 7.5
0%
Низкий
почти 5 лет назад
nvd логотип
CVE-2021-23981

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

CVSS3: 8.1
0%
Низкий
почти 5 лет назад
debian логотип
CVE-2021-23981

A texture upload of a Pixel Buffer Object could have confused the WebG ...

CVSS3: 8.1
0%
Низкий
почти 5 лет назад
github логотип
GHSA-hg4f-qgj6-3h4w

Using techniques that built on the slipstream research, a malicious webpage could have scanned both an internal network's hosts as well as services running on the user's local machine utilizing WebRTC connections. This vulnerability affects Firefox ESR < 78.9, Thunderbird < 78.9, and Firefox < 87.

0%
Низкий
больше 3 лет назад
github логотип
GHSA-6hwg-29mr-qgf8

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Thunderbird < 78.9, and Firefox < 87.

CVSS3: 8.1
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу