Логотип exploitDog
bind:"BDU:2014-00004" OR bind:"CVE-2012-1944"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2014-00004" OR bind:"CVE-2012-1944"

Количество 8

Количество 8

fstec логотип

BDU:2014-00004

около 13 лет назад

Уязвимость браузера Firefox, позволяющая злоумышленнику выполнить межсайтовый скриптинг

CVSS2: 4.3
EPSS: Низкий
ubuntu логотип

CVE-2012-1944

около 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2012-1944

около 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2012-1944

около 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2012-1944

около 13 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4. ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-mpv9-qhv2-p7fj

около 3 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

EPSS: Низкий
oracle-oval логотип

ELSA-2012-0715

около 13 лет назад

ELSA-2012-0715: thunderbird security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2012-0710

около 13 лет назад

ELSA-2012-0710: firefox security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2014-00004

Уязвимость браузера Firefox, позволяющая злоумышленнику выполнить межсайтовый скриптинг

CVSS2: 4.3
1%
Низкий
около 13 лет назад
ubuntu логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
около 13 лет назад
redhat логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
около 13 лет назад
nvd логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
около 13 лет назад
debian логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4. ...

CVSS2: 4.3
1%
Низкий
около 13 лет назад
github логотип
GHSA-mpv9-qhv2-p7fj

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

1%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2012-0715

ELSA-2012-0715: thunderbird security update (CRITICAL)

около 13 лет назад
oracle-oval логотип
ELSA-2012-0710

ELSA-2012-0710: firefox security update (CRITICAL)

около 13 лет назад

Уязвимостей на страницу