Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mozilla firefox 3.0beta5 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2009-1839
Mozilla Firefox 3 prior to 3.0.11 associates an incorrect principal with a file: URL loaded through the location bar, which allows user-assisted remote malicious users to bypass intended access restrictions and read files via a crafted HTML document, aka a "file-URL-to-file-...
Mozilla Firefox 3.0.7
Mozilla Firefox 3.1
Mozilla Firefox 3.0.9
Mozilla Firefox 3.0.8
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.5
Mozilla Firefox 3.0
Mozilla Firefox 3.0.3
Mozilla Firefox
Mozilla Firefox 3.0.6
Mozilla Firefox 3.0.1
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0beta5
1 EDB exploit
NA
CVE-2009-1840
Mozilla Firefox prior to 3.0.11, Thunderbird, and SeaMonkey do not check content policy before loading a script file into a XUL document, which allows remote malicious users to bypass intended access restrictions via a crafted HTML document, as demonstrated by a "web bug&quo...
Mozilla Seamonkey
Mozilla Firefox 3.0.7
Mozilla Firefox 3.1
Mozilla Firefox 3.0.9
Mozilla Firefox 3.0.8
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.5
Mozilla Firefox 3.0
Mozilla Thunderbird
Mozilla Firefox 3.0.3
Mozilla Firefox
Mozilla Firefox 3.0.6
Mozilla Firefox 3.0.1
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0beta5
NA
CVE-2009-1312
Mozilla Firefox prior to 3.0.9 and SeaMonkey 1.1.17 do not block javascript: URIs in Refresh headers in HTTP responses, which allows remote malicious users to conduct cross-site scripting (XSS) attacks via vectors related to (1) injecting a Refresh header or (2) specifying the co...
Mozilla Seamonkey
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 2.0 8
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
Mozilla Firefox 1.0.4
Mozilla Firefox 2.0.0.7
1 EDB exploit
NA
CVE-2009-1307
The view-source: URI implementation in Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey does not properly implement the Same Origin Policy, which allows remote malicious users to (1) bypass crossdomain.xml restrictions and connect to arbitrary web sites via a Flash file...
Mozilla Seamonkey
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
Mozilla Firefox 1.0.4
Mozilla Firefox 2.0.0.7
Mozilla Firefox 1.0.7
NA
CVE-2009-2467
Mozilla Firefox prior to 3.0.12 and 3.5 prior to 3.5.1 allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a Flash object, a slow script dialog, and the unloading of the Flash plugin, which trigge...
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 3.0.9
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 3.0.8
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.4.1
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.5
Mozilla Firefox 3.0.4
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
NA
CVE-2009-1306
The jar: URI implementation in Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey does not follow the Content-Disposition header of the inner URI, which allows remote malicious users to conduct cross-site scripting (XSS) attacks and possibly other attacks via an uploaded ...
Mozilla Seamonkey
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 2.0 8
Mozilla Firefox 2.0 .9
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
NA
CVE-2009-1308
Cross-site scripting (XSS) vulnerability in Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey allows remote malicious users to inject arbitrary web script or HTML via vectors involving XBL JavaScript bindings and remote stylesheets, as exploited in the wild by a March 20...
Mozilla Seamonkey
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 2.0 8
Mozilla Firefox 2.0 .9
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
NA
CVE-2009-1309
Mozilla Firefox prior to 3.0.9, Thunderbird, and SeaMonkey do not properly implement the Same Origin Policy for (1) XMLHttpRequest, involving a mismatch for a document's principal, and (2) XPCNativeWrapper.toString, involving an incorrect __proto__ scope, which allows remote...
Mozilla Seamonkey
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 2.0 8
Mozilla Firefox 2.0 .9
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
NA
CVE-2009-1169
The txMozillaXSLTProcessor::TransformToDoc function in Mozilla Firefox prior to 3.0.8 and SeaMonkey prior to 1.1.16 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via an XML file with a crafted XSLT transform.
Mozilla Firefox 0.1
Mozilla Firefox 0.9 Rc
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Firefox 1.5.2
Mozilla Firefox 1.5.0.6
Mozilla Firefox 1.8
Mozilla Firefox 2.0.0.2
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.4
Mozilla Firefox 1.0.2
Mozilla Firefox 3.0.4
Mozilla Firefox 2.0 8
Mozilla Firefox 2.0 .9
Mozilla Firefox 3.0.5
Mozilla Firefox 0.9.1
Mozilla Firefox 1.0.4
Mozilla Firefox 2.0.0.7
1 EDB exploit
NA
CVE-2009-1838
The garbage-collection implementation in Mozilla Firefox prior to 3.0.11, Thunderbird prior to 2.0.0.22, and SeaMonkey prior to 1.1.17 sets an element's owner document to null in unspecified circumstances, which allows remote malicious users to execute arbitrary JavaScript w...
Mozilla Seamonkey 1.1.10
Mozilla Firefox 0.1
Mozilla Thunderbird 1.5.0.7
Mozilla Firefox 0.9 Rc
Mozilla Thunderbird 0.6
Mozilla Seamonkey 1.0.3
Mozilla Firefox 0.8
Mozilla Firefox 2.0.0.12
Mozilla Thunderbird 0.7.2
Mozilla Firefox 1.5
Mozilla Firefox 2.0 .7
Mozilla Thunderbird 2.0.0.4
Mozilla Seamonkey 1.1.8
Mozilla Seamonkey
Mozilla Firefox 3.0.7
Mozilla Firefox 1.5.2
Mozilla Seamonkey 1.0.1
Mozilla Seamonkey 1.1.7
Mozilla Thunderbird 2.0.0.6
Mozilla Firefox 3.0.9
Mozilla Seamonkey 1.0.6
Mozilla Firefox 1.5.0.6
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
type confusion
IMAP
CVE-2024-36103
CVE-2024-28995
CVE-2024-37325
CVE-2024-30078
CVE-2024-30082
SQL injection
CVE-2024-30052
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »