Количество 9
Количество 9
CVE-2015-7207
Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.
CVE-2015-7207
Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.
CVE-2015-7207
Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.
CVE-2015-7207
Mozilla Firefox before 43.0 does not properly restrict the availabilit ...
GHSA-5845-x3vj-jgw8
Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.
BDU:2015-12249
Уязвимость браузера Firefox, позволяющая нарушителю получить конфиденциальную информацию или обойти существующую политику ограничения доступа
openSUSE-SU-2015:2353-1
Security update for MozillaFirefox
openSUSE-SU-2016:0307-1
Security update for seamonkey
openSUSE-SU-2016:0876-1
Security update for MozillaThunderbird
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2015-7207 Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300. | CVSS2: 5 | 0% Низкий | около 10 лет назад | |
CVE-2015-7207 Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300. | CVSS2: 4.3 | 0% Низкий | около 10 лет назад | |
CVE-2015-7207 Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300. | CVSS2: 5 | 0% Низкий | около 10 лет назад | |
CVE-2015-7207 Mozilla Firefox before 43.0 does not properly restrict the availabilit ... | CVSS2: 5 | 0% Низкий | около 10 лет назад | |
GHSA-5845-x3vj-jgw8 Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300. | 0% Низкий | больше 3 лет назад | ||
BDU:2015-12249 Уязвимость браузера Firefox, позволяющая нарушителю получить конфиденциальную информацию или обойти существующую политику ограничения доступа | CVSS2: 5 | 0% Низкий | около 10 лет назад | |
openSUSE-SU-2015:2353-1 Security update for MozillaFirefox | около 10 лет назад | |||
openSUSE-SU-2016:0307-1 Security update for seamonkey | около 10 лет назад | |||
openSUSE-SU-2016:0876-1 Security update for MozillaThunderbird | почти 10 лет назад |
Уязвимостей на страницу