Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 14

Количество 14

fstec логотип

BDU:2022-06101

больше 5 лет назад

Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, связанная с небезопасным управлением привилегиями, позволяющая нарушителю, действующему удаленно, повысить свои привилегии

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2021-29951

около 5 лет назад

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2021-29951

больше 5 лет назад

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2021-29951

около 5 лет назад

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2021-29951

около 5 лет назад

The Mozilla Maintenance Service granted SERVICE_START access to BUILTI ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-rc27-w7x3-jmp4

больше 4 лет назад

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1884-1

около 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:0858-1

около 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1919-1

около 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1886-1

около 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1884-1

около 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:14743-1

около 5 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2021:1854-1

около 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2021:1854-1

около 5 лет назад

Security update for MozillaThunderbird

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2022-06101

Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, связанная с небезопасным управлением привилегиями, позволяющая нарушителю, действующему удаленно, повысить свои привилегии

CVSS3: 6.5
2%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2021-29951

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.5
2%
Низкий
около 5 лет назад
redhat логотип
CVE-2021-29951

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.1
2%
Низкий
больше 5 лет назад
nvd логотип
CVE-2021-29951

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.5
2%
Низкий
около 5 лет назад
debian логотип
CVE-2021-29951

The Mozilla Maintenance Service granted SERVICE_START access to BUILTI ...

CVSS3: 6.5
2%
Низкий
около 5 лет назад
github логотип
GHSA-rc27-w7x3-jmp4

The Mozilla Maintenance Service granted SERVICE_START access to BUILTIN|Users which, in a domain network, grants normal remote users access to start or stop the service. This could be used to prevent the browser update service from operating (if an attacker spammed the 'Stop' command); but also exposed attack surface in the maintenance service. *Note: This issue only affected Windows operating systems older than Win 10 build 1709. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 78.10.1, Firefox < 87, and Firefox ESR < 78.10.1.

CVSS3: 6.5
2%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1884-1

Security update for MozillaFirefox

около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:0858-1

Security update for MozillaFirefox

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1919-1

Security update for MozillaFirefox

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1886-1

Security update for MozillaFirefox

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1884-1

Security update for MozillaFirefox

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:14743-1

Security update for MozillaFirefox

около 5 лет назад
suse-cvrf логотип
openSUSE-SU-2021:1854-1

Security update for MozillaThunderbird

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2021:1854-1

Security update for MozillaThunderbird

около 5 лет назад

Уязвимостей на страницу