Количество 12
Количество 12

BDU:2018-00161
Уязвимость реализации механизма CSP браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю осуществлять межсайтовые сценарные атаки

CVE-2017-7823
The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.

CVE-2017-7823
The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.

CVE-2017-7823
The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
CVE-2017-7823
The content security policy (CSP) "sandbox" directive did not create a ...
GHSA-hhcx-w758-8p3p
The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
ELSA-2017-2885
ELSA-2017-2885: thunderbird security update (IMPORTANT)
ELSA-2017-2831
ELSA-2017-2831: firefox security update (CRITICAL)

openSUSE-SU-2017:2615-1
Security update for Mozilla Firefox and NSS

SUSE-SU-2017:2872-2
Security update for MozillaFirefox, mozilla-nss

SUSE-SU-2017:2872-1
Security update for MozillaFirefox, mozilla-nss

SUSE-SU-2017:2688-1
Security update for MozillaFirefox, mozilla-nss
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | BDU:2018-00161 Уязвимость реализации механизма CSP браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю осуществлять межсайтовые сценарные атаки | CVSS3: 7.5 | 1% Низкий | почти 8 лет назад |
![]() | CVE-2017-7823 The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4. | CVSS3: 5.4 | 1% Низкий | около 7 лет назад |
![]() | CVE-2017-7823 The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4. | CVSS3: 6.1 | 1% Низкий | почти 8 лет назад |
![]() | CVE-2017-7823 The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4. | CVSS3: 5.4 | 1% Низкий | около 7 лет назад |
CVE-2017-7823 The content security policy (CSP) "sandbox" directive did not create a ... | CVSS3: 5.4 | 1% Низкий | около 7 лет назад | |
GHSA-hhcx-w758-8p3p The content security policy (CSP) "sandbox" directive did not create a unique origin for the document, causing it to behave as if the "allow-same-origin" keyword were always specified. This could allow a Cross-Site Scripting (XSS) attack to be launched from unsafe content. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4. | CVSS3: 5.4 | 1% Низкий | около 3 лет назад | |
ELSA-2017-2885 ELSA-2017-2885: thunderbird security update (IMPORTANT) | почти 8 лет назад | |||
ELSA-2017-2831 ELSA-2017-2831: firefox security update (CRITICAL) | почти 8 лет назад | |||
![]() | openSUSE-SU-2017:2615-1 Security update for Mozilla Firefox and NSS | почти 8 лет назад | ||
![]() | SUSE-SU-2017:2872-2 Security update for MozillaFirefox, mozilla-nss | почти 8 лет назад | ||
![]() | SUSE-SU-2017:2872-1 Security update for MozillaFirefox, mozilla-nss | почти 8 лет назад | ||
![]() | SUSE-SU-2017:2688-1 Security update for MozillaFirefox, mozilla-nss | почти 8 лет назад |
Уязвимостей на страницу