Количество 13
Количество 13

CVE-2015-0807
The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638.

CVE-2015-0807
The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638.

CVE-2015-0807
The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638.
CVE-2015-0807
The navigator.sendBeacon implementation in Mozilla Firefox before 37.0 ...
GHSA-h77x-2hj5-ggjw
The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638.

BDU:2015-09895
Уязвимость почтового клиента Thunderbird, позволяющая удалённому злоумышленнику подделать межсайтовые запросы

BDU:2015-09894
Уязвимость браузера Firefox ESR, позволяющая удалённому злоумышленнику подделать межсайтовые запросы

BDU:2015-09893
Уязвимость браузера Firefox, позволяющая удалённому злоумышленнику подделать межсайтовые запросы

SUSE-SU-2015:0706-1
Security update for Mozilla Firefox
ELSA-2015-0771
ELSA-2015-0771: thunderbird security update (IMPORTANT)
ELSA-2015-0766
ELSA-2015-0766: firefox security update (CRITICAL)

SUSE-SU-2015:0704-2
Security update for MozillaFirefox

SUSE-SU-2015:0704-1
Security update for MozillaFirefox
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
---|---|---|---|---|
![]() | CVE-2015-0807 The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638. | CVSS2: 6.8 | 0% Низкий | больше 10 лет назад |
![]() | CVE-2015-0807 The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638. | CVSS2: 4.3 | 0% Низкий | больше 10 лет назад |
![]() | CVE-2015-0807 The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638. | CVSS2: 6.8 | 0% Низкий | больше 10 лет назад |
CVE-2015-0807 The navigator.sendBeacon implementation in Mozilla Firefox before 37.0 ... | CVSS2: 6.8 | 0% Низкий | больше 10 лет назад | |
GHSA-h77x-2hj5-ggjw The navigator.sendBeacon implementation in Mozilla Firefox before 37.0, Firefox ESR 31.x before 31.6, and Thunderbird before 31.6 processes HTTP 30x status codes for redirects after a preflight request has occurred, which allows remote attackers to bypass intended CORS access-control checks and conduct cross-site request forgery (CSRF) attacks via a crafted web site, a similar issue to CVE-2014-8638. | 0% Низкий | больше 3 лет назад | ||
![]() | BDU:2015-09895 Уязвимость почтового клиента Thunderbird, позволяющая удалённому злоумышленнику подделать межсайтовые запросы | CVSS2: 6.8 | 0% Низкий | больше 10 лет назад |
![]() | BDU:2015-09894 Уязвимость браузера Firefox ESR, позволяющая удалённому злоумышленнику подделать межсайтовые запросы | CVSS2: 6.8 | 0% Низкий | больше 10 лет назад |
![]() | BDU:2015-09893 Уязвимость браузера Firefox, позволяющая удалённому злоумышленнику подделать межсайтовые запросы | CVSS2: 6.8 | 0% Низкий | больше 10 лет назад |
![]() | SUSE-SU-2015:0706-1 Security update for Mozilla Firefox | больше 10 лет назад | ||
ELSA-2015-0771 ELSA-2015-0771: thunderbird security update (IMPORTANT) | больше 10 лет назад | |||
ELSA-2015-0766 ELSA-2015-0766: firefox security update (CRITICAL) | больше 10 лет назад | |||
![]() | SUSE-SU-2015:0704-2 Security update for MozillaFirefox | больше 10 лет назад | ||
![]() | SUSE-SU-2015:0704-1 Security update for MozillaFirefox | больше 10 лет назад |
Уязвимостей на страницу