Логотип exploitDog
bind:CVE-2015-7207
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2015-7207

Количество 9

Количество 9

ubuntu логотип

CVE-2015-7207

около 10 лет назад

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

CVSS2: 5
EPSS: Низкий
redhat логотип

CVE-2015-7207

около 10 лет назад

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2015-7207

около 10 лет назад

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2015-7207

около 10 лет назад

Mozilla Firefox before 43.0 does not properly restrict the availabilit ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-5845-x3vj-jgw8

больше 3 лет назад

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

EPSS: Низкий
fstec логотип

BDU:2015-12249

около 10 лет назад

Уязвимость браузера Firefox, позволяющая нарушителю получить конфиденциальную информацию или обойти существующую политику ограничения доступа

CVSS2: 5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2015:2353-1

около 10 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:0307-1

около 10 лет назад

Security update for seamonkey

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2016:0876-1

почти 10 лет назад

Security update for MozillaThunderbird

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-7207

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

CVSS2: 5
0%
Низкий
около 10 лет назад
redhat логотип
CVE-2015-7207

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

CVSS2: 4.3
0%
Низкий
около 10 лет назад
nvd логотип
CVE-2015-7207

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

CVSS2: 5
0%
Низкий
около 10 лет назад
debian логотип
CVE-2015-7207

Mozilla Firefox before 43.0 does not properly restrict the availabilit ...

CVSS2: 5
0%
Низкий
около 10 лет назад
github логотип
GHSA-5845-x3vj-jgw8

Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.

0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2015-12249

Уязвимость браузера Firefox, позволяющая нарушителю получить конфиденциальную информацию или обойти существующую политику ограничения доступа

CVSS2: 5
0%
Низкий
около 10 лет назад
suse-cvrf логотип
openSUSE-SU-2015:2353-1

Security update for MozillaFirefox

около 10 лет назад
suse-cvrf логотип
openSUSE-SU-2016:0307-1

Security update for seamonkey

около 10 лет назад
suse-cvrf логотип
openSUSE-SU-2016:0876-1

Security update for MozillaThunderbird

почти 10 лет назад

Уязвимостей на страницу