Логотип exploitDog
bind:"CVE-2012-1944"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2012-1944"

Количество 8

Количество 8

ubuntu логотип

CVE-2012-1944

почти 14 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2012-1944

почти 14 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2012-1944

почти 14 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2012-1944

почти 14 лет назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4. ...

CVSS2: 4.3
EPSS: Низкий
github логотип

GHSA-mpv9-qhv2-p7fj

почти 4 года назад

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

EPSS: Низкий
fstec логотип

BDU:2014-00004

почти 14 лет назад

Уязвимость браузера Firefox, позволяющая злоумышленнику выполнить межсайтовый скриптинг

CVSS2: 4.3
EPSS: Низкий
oracle-oval логотип

ELSA-2012-0715

почти 14 лет назад

ELSA-2012-0715: thunderbird security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2012-0710

почти 14 лет назад

ELSA-2012-0710: firefox security update (CRITICAL)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
почти 14 лет назад
redhat логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
почти 14 лет назад
nvd логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

CVSS2: 4.3
1%
Низкий
почти 14 лет назад
debian логотип
CVE-2012-1944

The Content Security Policy (CSP) implementation in Mozilla Firefox 4. ...

CVSS2: 4.3
1%
Низкий
почти 14 лет назад
github логотип
GHSA-mpv9-qhv2-p7fj

The Content Security Policy (CSP) implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 does not block inline event handlers, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted HTML document.

1%
Низкий
почти 4 года назад
fstec логотип
BDU:2014-00004

Уязвимость браузера Firefox, позволяющая злоумышленнику выполнить межсайтовый скриптинг

CVSS2: 4.3
1%
Низкий
почти 14 лет назад
oracle-oval логотип
ELSA-2012-0715

ELSA-2012-0715: thunderbird security update (CRITICAL)

почти 14 лет назад
oracle-oval логотип
ELSA-2012-0710

ELSA-2012-0710: firefox security update (CRITICAL)

почти 14 лет назад

Уязвимостей на страницу