Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tom ferris vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2005-2701
Heap-based buffer overflow in Firefox prior to 1.0.7 and Mozilla Suite prior to 1.7.12 allows remote malicious users to execute arbitrary code via an XBM image file that ends in a large number of spaces instead of the expected end tag.
Mozilla Firefox 1.0.5
Mozilla Firefox 1.0.3
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0
Mozilla Mozilla Suite 1.7.7
Mozilla Mozilla Suite 1.7.8
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0.2
Mozilla Firefox
Mozilla Mozilla Suite
Mozilla Mozilla Suite 1.7.10
Mozilla Mozilla Suite 1.7.6
NA
CVE-2005-2702
Firefox prior to 1.0.7 and Mozilla Suite prior to 1.7.12 allows remote malicious users to cause a denial of service (crash) and possibly execute arbitrary code via Unicode sequences with "zero-width non-joiner" characters.
Mozilla Firefox 1.0
Mozilla Mozilla Suite 1.7.6
Mozilla Mozilla Suite 1.7.7
Mozilla Firefox 1.0.3
Mozilla Firefox 1.0.4
Mozilla Mozilla Suite
Mozilla Firefox 1.0.5
Mozilla Mozilla Suite 1.7.10
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0.2
Mozilla Mozilla Suite 1.7.8
Mozilla Firefox
NA
CVE-2005-2703
Firefox prior to 1.0.7 and Mozilla Suite prior to 1.7.12 allows remote malicious users to modify HTTP headers of XML HTTP requests via XMLHttpRequest, and possibly use the client to exploit vulnerabilities in servers or proxies, including HTTP request smuggling and HTTP request s...
Mozilla Firefox 1.0.5
Mozilla Mozilla Suite 1.7.10
Mozilla Firefox 1.0.3
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0
Mozilla Mozilla Suite 1.7.6
Mozilla Mozilla Suite 1.7.7
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0.2
Mozilla Mozilla Suite 1.7.8
Mozilla Firefox
Mozilla Mozilla Suite
NA
CVE-2005-2704
Firefox prior to 1.0.7 and Mozilla Suite prior to 1.7.12 allows remote malicious users to spoof DOM objects via an XBL control that implements an internal XPCOM interface.
Mozilla Firefox 1.0.2
Mozilla Firefox 1.0.3
Mozilla Firefox 1.0.4
Mozilla Mozilla Suite
Mozilla Mozilla Suite 1.7.6
Mozilla Mozilla Suite 1.7.7
Mozilla Firefox 1.0
Mozilla Firefox 1.0.1
Mozilla Mozilla Suite 1.7.8
Mozilla Firefox
Mozilla Firefox 1.0.5
Mozilla Mozilla Suite 1.7.10
NA
CVE-2005-2705
Integer overflow in the JavaScript engine in Firefox prior to 1.0.7 and Mozilla Suite prior to 1.7.12 might allow remote malicious users to execute arbitrary code.
Mozilla Mozilla Suite 1.7.10
Mozilla Mozilla Suite 1.7.6
Mozilla Firefox 1.0.2
Mozilla Firefox 1.0.3
Mozilla Firefox
Mozilla Mozilla Suite
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.5
Mozilla Firefox 1.0
Mozilla Firefox 1.0.1
Mozilla Mozilla Suite 1.7.7
Mozilla Mozilla Suite 1.7.8
NA
CVE-2005-2706
Firefox prior to 1.0.7 and Mozilla before Suite 1.7.12 allows remote malicious users to execute Javascript with chrome privileges via an about: page such as about:mozilla.
Mozilla Firefox 1.0.2
Mozilla Mozilla Suite 1.7.10
Mozilla Mozilla Suite 1.7.6
Mozilla Firefox 1.0
Mozilla Firefox 1.0.1
Mozilla Mozilla Suite 1.7.7
Mozilla Mozilla Suite 1.7.8
Mozilla Firefox 1.0.3
Mozilla Firefox
Mozilla Mozilla Suite
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.5
NA
CVE-2005-2707
Firefox prior to 1.0.7 and Mozilla Suite prior to 1.7.12 allows remote malicious users to spawn windows without user interface components such as the address and status bar, which could be used to conduct spoofing or phishing attacks.
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0.2
Mozilla Mozilla Suite 1.7.8
Mozilla Firefox
Mozilla Mozilla Suite
Mozilla Firefox 1.0.3
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.5
Mozilla Mozilla Suite 1.7.10
Mozilla Firefox 1.0
Mozilla Mozilla Suite 1.7.6
Mozilla Mozilla Suite 1.7.7
NA
CVE-2005-2968
Firefox 1.0.6 and Mozilla 1.7.10 allows malicious users to execute arbitrary commands via shell metacharacters in a URL that is provided to the browser on the command line, which is sent unfiltered to bash.
Mozilla Mozilla 1.7.10
Mozilla Firefox 1.0.6
1 EDB exploit
NA
CVE-2007-5338
Mozilla Firefox prior to 2.0.0.8 and SeaMonkey prior to 1.1.5 allow remote malicious users to execute arbitrary Javascript with user privileges by using the Script object to modify XPCNativeWrappers in a way that causes the script to be executed when a chrome action is performed.
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2007-3738
Multiple unspecified vulnerabilities in Mozilla Firefox prior to 2.0.0.5 allow remote malicious users to execute arbitrary code via a crafted XPCNativeWrapper.
Mozilla Firefox 2.0
Mozilla Firefox 2.0.0.1
Mozilla Firefox 2.0.0.2
Mozilla Firefox 2.0.0.3
Mozilla Firefox 2.0.0.4
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2012-1823
malicious code
CVE-2024-5770
CVE-2023-45866
CVE-2024-35687
local users
CVE-2024-31246
CVE-2024-35730
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »