Логотип exploitDog
bind:"GHSA-p7q2-jcwm-cgcm" OR bind:"CVE-2013-1714"
Консоль
Логотип exploitDog

exploitDog

bind:"GHSA-p7q2-jcwm-cgcm" OR bind:"CVE-2013-1714"

Количество 9

Количество 9

github логотип

GHSA-p7q2-jcwm-cgcm

больше 3 лет назад

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

EPSS: Низкий
ubuntu логотип

CVE-2013-1714

около 12 лет назад

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
redhat логотип

CVE-2013-1714

около 12 лет назад

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2013-1714

около 12 лет назад

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2013-1714

около 12 лет назад

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ...

CVSS2: 4.3
EPSS: Низкий
oracle-oval логотип

ELSA-2013-1142

около 12 лет назад

ELSA-2013-1142: thunderbird security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2013-1140

около 12 лет назад

ELSA-2013-1140: firefox security update (CRITICAL)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0447-1

почти 12 лет назад

Security update for Mozilla Firefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0446-1

почти 12 лет назад

Security update for Mozilla Firefox

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-p7q2-jcwm-cgcm

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

1%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2013-1714

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVSS2: 4.3
1%
Низкий
около 12 лет назад
redhat логотип
CVE-2013-1714

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVSS2: 4.3
1%
Низкий
около 12 лет назад
nvd логотип
CVE-2013-1714

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR 17.x before 17.0.8, and SeaMonkey before 2.20 does not properly restrict XMLHttpRequest calls, which allows remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via unspecified vectors.

CVSS2: 4.3
1%
Низкий
около 12 лет назад
debian логотип
CVE-2013-1714

The Web Workers implementation in Mozilla Firefox before 23.0, Firefox ...

CVSS2: 4.3
1%
Низкий
около 12 лет назад
oracle-oval логотип
ELSA-2013-1142

ELSA-2013-1142: thunderbird security update (IMPORTANT)

около 12 лет назад
oracle-oval логотип
ELSA-2013-1140

ELSA-2013-1140: firefox security update (CRITICAL)

около 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:0447-1

Security update for Mozilla Firefox

почти 12 лет назад
suse-cvrf логотип
SUSE-SU-2015:0446-1

Security update for Mozilla Firefox

почти 12 лет назад

Уязвимостей на страницу