Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
moz_bug_r_a4 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-0419
Mozilla Firefox prior to 2.0.0.12 and SeaMonkey prior to 1.1.8 allows remote malicious users to steal navigation history and cause a denial of service (crash) via images in a page that uses designMode frames, which triggers memory corruption related to resize handles.
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2008-0591
Mozilla Firefox prior to 2.0.0.12 and Thunderbird prior to 2.0.0.12 does not properly manage a delay timer used in confirmation dialogs, which might allow remote malicious users to trick users into confirming an unsafe action, such as remote file execution, by using a timer to ch...
Mozilla Firefox
Mozilla Thunderbird
NA
CVE-2008-0592
Mozilla Firefox prior to 2.0.0.12 and SeaMonkey prior to 1.1.8 allows user-assisted remote malicious users to cause a denial of service via a plain .txt file with a "Content-Disposition: attachment" and an invalid "Content-Type: plain/text," which prevents Fir...
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2008-0593
Gecko-based browsers, including Mozilla Firefox prior to 2.0.0.12 and SeaMonkey prior to 1.1.8, modify the .href property of stylesheet DOM nodes to the final URI of a 302 redirect, which might allow remote malicious users to bypass the Same Origin Policy and read sensitive infor...
Mozilla Firefox 1.5.0.2
Mozilla Firefox 1.5.2
Mozilla Firefox 2.0
Mozilla Firefox 0.2
Mozilla Firefox 0.9.2
Mozilla Firefox
Mozilla Firefox 2.0.0.1
Mozilla Firefox 2.0.0.10
Mozilla Firefox 1.0.2
Mozilla Firefox 1.5.0.12
Mozilla Seamonkey 1.1.14
Mozilla Seamonkey
Mozilla Seamonkey 1.0
Mozilla Seamonkey 1.1.13
Mozilla Seamonkey 1.0.1
Mozilla Seamonkey 1.1.12
Mozilla Seamonkey 1.0.8
Mozilla Seamonkey 1.0.7
Mozilla Seamonkey 1.0.4
Mozilla Seamonkey 1.0.3
Mozilla Seamonkey 1.1.15
Mozilla Seamonkey 1.1.11
NA
CVE-2008-0594
Mozilla Firefox prior to 2.0.0.12 does not always display a web forgery warning dialog if the entire contents of a web page are in a DIV tag that uses absolute positioning, which makes it easier for remote malicious users to conduct phishing attacks.
Mozilla Firefox
NA
CVE-2007-4879
Mozilla Firefox before Firefox 2.0.0.13, and SeaMonkey prior to 1.1.9, can automatically install TLS client certificates with minimal user interaction, and automatically sends these certificates when requested, which makes it easier for remote web sites to track user activities a...
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.7
Mozilla Firefox 1.0.6
Mozilla Firefox 1.5.0.2
Mozilla Firefox 1.5.0.3
Mozilla Firefox 1.5.4
Mozilla Firefox 1.5.1
Mozilla Firefox 1.5.8
Mozilla Firefox 1.5.7
Mozilla Firefox 2.0.0.2
Mozilla Firefox 2.0.0.3
Mozilla Firefox
Mozilla Firefox 0.10
Mozilla Firefox 0.6.1
Mozilla Firefox 0.7
Mozilla Firefox 1.0
Mozilla Firefox 1.0.3
Mozilla Firefox 1.4.1
Mozilla Firefox 1.5.0.1
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.9
Mozilla Firefox 1.5.0.6
NA
CVE-2007-3089
Mozilla Firefox prior to 2.0.0.5 does not prevent use of document.write to replace an IFRAME (1) during the load stage or (2) in the case of an about:blank frame, which allows remote malicious users to display arbitrary HTML or execute certain JavaScript code, as demonstrated by ...
Mozilla Firefox 1.0
Mozilla Firefox 1.0.1
Mozilla Firefox 1.0.8
Mozilla Firefox 0.8
Mozilla Firefox 0.9
Mozilla Firefox 0.9.1
Mozilla Firefox 1.0.4
Mozilla Firefox 1.0.5
Mozilla Firefox 1.5.0.11
Mozilla Firefox 1.5.0.2
Mozilla Firefox 1.5.1
Mozilla Firefox 1.5.2
Mozilla Firefox 2.0
Mozilla Firefox 2.0.0.1
Mozilla Firefox 0.10
Mozilla Firefox 0.10.1
Mozilla Firefox 1.0.2
Mozilla Firefox 1.0.3
Mozilla Firefox 1.5.0.1
Mozilla Firefox 1.5.0.10
Mozilla Firefox 1.5.0.7
Mozilla Firefox 1.5.0.8
NA
CVE-2008-1238
Mozilla Firefox prior to 2.0.0.13 and SeaMonkey prior to 1.1.9, when generating the HTTP Referer header, does not list the entire URL when it contains Basic Authentication credentials without a username, which makes it easier for remote malicious users to bypass application prote...
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2008-1240
LiveConnect in Mozilla Firefox prior to 2.0.0.13 and SeaMonkey prior to 1.1.9 does not properly parse the content origin for jar: URIs before sending them to the Java plugin, which allows remote malicious users to access arbitrary ports on the local machine. NOTE: this is closely...
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2008-1241
GUI overlay vulnerability in Mozilla Firefox prior to 2.0.0.13 and SeaMonkey prior to 1.1.9 allows remote malicious users to spoof form elements and redirect user inputs via a borderless XUL pop-up window from a background tab.
Mozilla Seamonkey
Mozilla Firefox
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
privilege escalation
CVE-2024-20696
CVE-2024-29829
CVE-2024-33999
CVE-2024-35646
physical
CVE-2024-24919
CVE-2024-31030
local users
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »