Логотип exploitDog
bind:"CVE-2017-7846" OR bind:"CVE-2017-7829" OR bind:"CVE-2017-7847" OR bind:"CVE-2017-7848"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2017-7846" OR bind:"CVE-2017-7829" OR bind:"CVE-2017-7847" OR bind:"CVE-2017-7848"

Количество 21

Количество 21

oracle-oval логотип

ELSA-2018-0061

больше 7 лет назад

ELSA-2018-0061: thunderbird security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2017-7846

около 7 лет назад

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2017-7846

больше 7 лет назад

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2017-7846

около 7 лет назад

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2017-7846

около 7 лет назад

It is possible to execute JavaScript in the parsed RSS feed when RSS f ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-2529-rwp4-75f6

около 3 лет назад

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2017-7829

около 7 лет назад

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2017-7829

больше 12 лет назад

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2017-7829

около 7 лет назад

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2017-7829

около 7 лет назад

It is possible to spoof the sender's email address and display an arbi ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-hpvr-62fv-x7x4

около 3 лет назад

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2017-7848

около 7 лет назад

RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2017-7848

больше 7 лет назад

RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2017-7848

около 7 лет назад

RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2017-7848

около 7 лет назад

RSS fields can inject new lines into the created email structure, modi ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2017-7847

около 7 лет назад

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2017-7847

больше 7 лет назад

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2017-7847

около 7 лет назад

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2017-7847

около 7 лет назад

Crafted CSS in an RSS feed can leak and reveal local path strings, whi ...

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-jmgx-hhrr-ppmv

около 3 лет назад

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2018-0061

ELSA-2018-0061: thunderbird security update (IMPORTANT)

больше 7 лет назад
ubuntu логотип
CVE-2017-7846

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
1%
Низкий
около 7 лет назад
redhat логотип
CVE-2017-7846

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
1%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-7846

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
1%
Низкий
около 7 лет назад
debian логотип
CVE-2017-7846

It is possible to execute JavaScript in the parsed RSS feed when RSS f ...

CVSS3: 8.8
1%
Низкий
около 7 лет назад
github логотип
GHSA-2529-rwp4-75f6

It is possible to execute JavaScript in the parsed RSS feed when RSS feed is viewed as a website, e.g. via "View -> Feed article -> Website" or in the standard format of "View -> Feed article -> default format". This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 8.8
1%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2017-7829

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
около 7 лет назад
redhat логотип
CVE-2017-7829

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
больше 12 лет назад
nvd логотип
CVE-2017-7829

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
около 7 лет назад
debian логотип
CVE-2017-7829

It is possible to spoof the sender's email address and display an arbi ...

CVSS3: 5.3
2%
Низкий
около 7 лет назад
github логотип
GHSA-hpvr-62fv-x7x4

It is possible to spoof the sender's email address and display an arbitrary sender address to the email recipient. The real sender's address is not displayed if preceded by a null character in the display string. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
около 3 лет назад
ubuntu логотип
CVE-2017-7848

RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
около 7 лет назад
redhat логотип
CVE-2017-7848

RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-7848

RSS fields can inject new lines into the created email structure, modifying the message body. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 5.3
2%
Низкий
около 7 лет назад
debian логотип
CVE-2017-7848

RSS fields can inject new lines into the created email structure, modi ...

CVSS3: 5.3
2%
Низкий
около 7 лет назад
ubuntu логотип
CVE-2017-7847

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 4.3
1%
Низкий
около 7 лет назад
redhat логотип
CVE-2017-7847

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 3.7
1%
Низкий
больше 7 лет назад
nvd логотип
CVE-2017-7847

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 4.3
1%
Низкий
около 7 лет назад
debian логотип
CVE-2017-7847

Crafted CSS in an RSS feed can leak and reveal local path strings, whi ...

CVSS3: 4.3
1%
Низкий
около 7 лет назад
github логотип
GHSA-jmgx-hhrr-ppmv

Crafted CSS in an RSS feed can leak and reveal local path strings, which may contain user name. This vulnerability affects Thunderbird < 52.5.2.

CVSS3: 4.3
1%
Низкий
около 3 лет назад

Уязвимостей на страницу