Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mozilla firefox 3.0beta5 vulnerabilities and exploits
(subscribe to this query)
5.4
CVSSv2
CVE-2009-1839
Mozilla Firefox 3 prior to 3.0.11 associates an incorrect principal with a file: URL loaded through the location bar, which allows user-assisted remote malicious users to bypass intended access restrictions and read files via a crafted HTML document, aka a "file-URL-to-file-...
Mozilla Firefox 3.0.7
Mozilla Firefox 3.0.5
Mozilla Firefox 3.0.2
Mozilla Firefox
Mozilla Firefox 3.0.1
Mozilla Firefox 3.0
Mozilla Firefox 3.0.6
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.3
Mozilla Firefox 3.0.8
Mozilla Firefox 3.0.9
Mozilla Firefox 3.1
Mozilla Firefox 3.0beta5
1 EDB exploit
9.3
CVSSv2
CVE-2009-1840
Mozilla Firefox prior to 3.0.11, Thunderbird, and SeaMonkey do not check content policy before loading a script file into a XUL document, which allows remote malicious users to bypass intended access restrictions via a crafted HTML document, as demonstrated by a "web bug&quo...
Mozilla Firefox 3.0.3
Mozilla Firefox 3.0.7
Mozilla Firefox 3.0.2
Mozilla Firefox
Mozilla Firefox 3.0.1
Mozilla Firefox 3.0
Mozilla Firefox 3.0beta5
Mozilla Firefox 3.0.6
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.8
Mozilla Firefox 3.0.9
Mozilla Firefox 3.1
Mozilla Firefox 3.0.5
Mozilla Thunderbird
Mozilla Seamonkey
4.3
CVSSv2
CVE-2009-1312
Mozilla Firefox prior to 3.0.9 and SeaMonkey 1.1.17 do not block javascript: URIs in Refresh headers in HTTP responses, which allows remote malicious users to conduct cross-site scripting (XSS) attacks via vectors related to (1) injecting a Refresh header or (2) specifying the co...
Mozilla Firefox
Mozilla Firefox 0.1
Mozilla Firefox 0.6
Mozilla Firefox 0.6.1
Mozilla Firefox 0.7.1
Mozilla Firefox 1.0
Mozilla Firefox 1.0.5
Mozilla Firefox 1.0.4
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.6
Mozilla Firefox 1.5.5
Mozilla Firefox 1.5.3
Mozilla Firefox 1.5
Mozilla Firefox 2.0
Mozilla Firefox 2.0.0.1
Mozilla Firefox 2.0.0.11
Mozilla Firefox 2.0.0.19
Mozilla Firefox 2.0.0.3
Mozilla Firefox 2.0.0.2
Mozilla Firefox 2.0.0.6
Mozilla Firefox 2.0.0.5
1 EDB exploit
6.8
CVSSv2
CVE-2009-1307
The view-source: URI implementation in Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey does not properly implement the Same Origin Policy, which allows remote malicious users to (1) bypass crossdomain.xml restrictions and connect to arbitrary web sites via a Flash file...
Mozilla Firefox 0.1
Mozilla Firefox 0.10
Mozilla Firefox 0.8
Mozilla Firefox 0.9.1
Mozilla Firefox 0.9
Mozilla Firefox 0.9 Rc
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.7
Mozilla Firefox 1.5.0.12
Mozilla Firefox 1.5.0.1
Mozilla Firefox 1.5.3
Mozilla Firefox 1.5.4
Mozilla Firefox 2.0
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.14
Mozilla Firefox 2.0.0.18
Mozilla Firefox 2.0.0.2
Mozilla Firefox 2.0.0.16
Mozilla Firefox 2.0.0.5
Mozilla Firefox 2.0.0.4
Mozilla Firefox 3.0.7
Mozilla Firefox 3.0.5
10
CVSSv2
CVE-2009-2467
Mozilla Firefox prior to 3.0.12 and 3.5 prior to 3.5.1 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a Flash object, a slow script dialog, and the unloading of the Flash plugin, which trigge...
Mozilla Firefox 0.10.1
Mozilla Firefox 0.9.1
Mozilla Firefox 3.0.5
Mozilla Firefox 3.0.1
Mozilla Firefox 2.0.0.19
Mozilla Firefox 0.9.3
Mozilla Firefox 0.9.2
Mozilla Firefox 1.0.1
Mozilla Firefox 3.0
Mozilla Firefox 1.0.5
Mozilla Firefox 2.0.0.21
Mozilla Firefox 3.0.7
Mozilla Firefox 0.7
Mozilla Firefox 0.7.1
Mozilla Firefox 0.2
Mozilla Firefox 1.5.0.4
Mozilla Firefox 1.5.0.1
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.7
Mozilla Firefox 1.5
Mozilla Firefox 1.5.5
Mozilla Firefox 2.0.0.6
4.3
CVSSv2
CVE-2009-1306
The jar: URI implementation in Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey does not follow the Content-Disposition header of the inner URI, which allows remote malicious users to conduct cross-site scripting (XSS) attacks and possibly other attacks via an uploaded ...
Mozilla Firefox 0.10
Mozilla Firefox 0.4
Mozilla Firefox 0.5
Mozilla Firefox 0.7
Mozilla Firefox 0.9.2
Mozilla Firefox 1.0.3
Mozilla Firefox 1.0.2
Mozilla Firefox 1.5.0.5
Mozilla Firefox 1.5.0.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.5.7
Mozilla Firefox 1.5.6
Mozilla Firefox 1.5.0.9
Mozilla Firefox 1.5.0.7
Mozilla Firefox 2.0.0.10
Mozilla Firefox 0.2
Mozilla Firefox 0.3
Mozilla Firefox 0.9
Mozilla Firefox 0.9.3
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0
Mozilla Firefox 1.0.8
4.3
CVSSv2
CVE-2009-1308
Cross-site scripting (XSS) vulnerability in Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey allows remote malicious users to inject arbitrary web script or HTML via vectors involving XBL JavaScript bindings and remote stylesheets, as exploited in the wild by a March 20...
Mozilla Seamonkey
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 2.0 8
Mozilla Firefox 2.0 .9
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
4.3
CVSSv2
CVE-2009-1309
Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document's principal, and (2) XPCNativeWrapper.toString, involving an incorrect __proto__ scope, which allows remote...
Mozilla Firefox 0.4
Mozilla Firefox 0.5
Mozilla Firefox 0.2
Mozilla Firefox 0.3
Mozilla Firefox 0.9
Mozilla Firefox 0.9.3
Mozilla Firefox 1.0.6
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0.8
Mozilla Firefox 1.5.0.4
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5
Mozilla Firefox 1.5.1
Mozilla Firefox 1.5.2
Mozilla Firefox 2.0.0.12
Mozilla Firefox 2.0.0.21
Mozilla Firefox 2.0.0.15
Mozilla Firefox 2.0
Mozilla Firefox 2.0.0.9
Mozilla Firefox 2.0 .1
Mozilla Firefox 3.0.1
Mozilla Firefox 2.0 8
9.3
CVSSv2
CVE-2009-1169
The txMozillaXSLTProcessor::TransformToDoc function in Mozilla Firefox prior to 3.0.8 and SeaMonkey prior to 1.1.16 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an XML file with a crafted XSLT transform.
Mozilla Firefox 2.0.0.14
Mozilla Firefox 2.0.0.12
Mozilla Firefox 3.0.1
Mozilla Firefox 0.9
Mozilla Firefox 2.0
Mozilla Firefox 1.0.3
Mozilla Firefox 0.10.1
Mozilla Firefox 0.9.1
Mozilla Firefox 2.0.0.19
Mozilla Firefox 3.0
Mozilla Firefox 0.9.3
Mozilla Firefox 0.9.2
Mozilla Firefox 1.0.2
Mozilla Firefox 2.0 .1
Mozilla Firefox 2.0 .10
Mozilla Firefox 2.0.0.21
Mozilla Firefox 2.0.0.17
Mozilla Firefox 0.7
Mozilla Firefox 0.7.1
Mozilla Firefox 1.5.0.4
Mozilla Firefox 1.5.0.5
Mozilla Firefox 1.5.0.10
1 EDB exploit
9.3
CVSSv2
CVE-2009-1832
Mozilla Firefox prior to 3.0.11, Thunderbird prior to 2.0.0.22, and SeaMonkey prior to 1.1.17 allow remote malicious users to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors involving "double frame constructi...
Mozilla Firefox 3.0.1
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0
Mozilla Firefox 3.0.9
Mozilla Thunderbird 2.0.0.15
Mozilla Thunderbird 2.0.0.16
Mozilla Thunderbird 2.0.0.6
Mozilla Thunderbird 2.0.0.7
Mozilla Thunderbird 2.0 .5
Mozilla Thunderbird 2.0 .6
Mozilla Thunderbird 0.5
Mozilla Thunderbird 0.6
Mozilla Thunderbird 1.0.1
Mozilla Thunderbird 1.0.3
Mozilla Thunderbird 1.0.8
Mozilla Thunderbird 1.5.0.12
Mozilla Thunderbird 1.5.0.5
Mozilla Thunderbird 1.5.0.9
Mozilla Thunderbird 1.5.0.7
Mozilla Thunderbird 1.5.0.2
Mozilla Seamonkey 1.0.6
Mozilla Seamonkey 1.0.8
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-21991
CVE-2024-32674
path traversal
CVE-2023-21987
denial of service
dos
CVE-2024-4647
CVE-2024-25519
CVE-2024-33612
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »