Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
michal zalewski vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-0415
Mozilla Firefox prior to 2.0.0.12, Thunderbird prior to 2.0.0.12, and SeaMonkey prior to 1.1.8 allows remote malicious users to execute script outside of the sandbox and conduct cross-site scripting (XSS) attacks via multiple vectors including the XMLDocument.load function, aka &...
Mozilla Thunderbird
Mozilla Seamonkey
Mozilla Firefox
NA
CVE-2008-0419
Mozilla Firefox prior to 2.0.0.12 and SeaMonkey prior to 1.1.8 allows remote malicious users to steal navigation history and cause a denial of service (crash) via images in a page that uses designMode frames, which triggers memory corruption related to resize handles.
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2008-0591
Mozilla Firefox prior to 2.0.0.12 and Thunderbird prior to 2.0.0.12 does not properly manage a delay timer used in confirmation dialogs, which might allow remote malicious users to trick users into confirming an unsafe action, such as remote file execution, by using a timer to ch...
Mozilla Firefox
Mozilla Thunderbird
NA
CVE-2008-0592
Mozilla Firefox prior to 2.0.0.12 and SeaMonkey prior to 1.1.8 allows user-assisted remote malicious users to cause a denial of service via a plain .txt file with a "Content-Disposition: attachment" and an invalid "Content-Type: plain/text," which prevents Fir...
Mozilla Firefox
Mozilla Seamonkey
NA
CVE-2008-0593
Gecko-based browsers, including Mozilla Firefox prior to 2.0.0.12 and SeaMonkey prior to 1.1.8, modify the .href property of stylesheet DOM nodes to the final URI of a 302 redirect, which might allow remote malicious users to bypass the Same Origin Policy and read sensitive infor...
Mozilla Firefox 1.5.0.2
Mozilla Firefox 1.5.2
Mozilla Firefox 2.0
Mozilla Firefox 0.2
Mozilla Firefox 0.9.2
Mozilla Firefox
Mozilla Firefox 2.0.0.1
Mozilla Firefox 2.0.0.10
Mozilla Firefox 1.0.2
Mozilla Firefox 1.5.0.12
Mozilla Seamonkey 1.1.14
Mozilla Seamonkey
Mozilla Seamonkey 1.0
Mozilla Seamonkey 1.1.13
Mozilla Seamonkey 1.0.1
Mozilla Seamonkey 1.1.12
Mozilla Seamonkey 1.0.8
Mozilla Seamonkey 1.0.7
Mozilla Seamonkey 1.0.4
Mozilla Seamonkey 1.0.3
Mozilla Seamonkey 1.1.15
Mozilla Seamonkey 1.1.11
NA
CVE-2008-0594
Mozilla Firefox prior to 2.0.0.12 does not always display a web forgery warning dialog if the entire contents of a web page are in a DIV tag that uses absolute positioning, which makes it easier for remote malicious users to conduct phishing attacks.
Mozilla Firefox
NA
CVE-2008-0416
Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox prior to 2.0.0.12, Thunderbird prior to 2.0.0.12, and SeaMonkey prior to 1.1.8 allow remote malicious users to inject arbitrary web script or HTML via certain character encodings, including (1) a backspace cha...
Mozilla Thunderbird
Mozilla Seamonkey
Mozilla Firefox
9.8
CVSSv3
CVE-2005-3120
Stack-based buffer overflow in the HTrjis function in Lynx 2.8.6 and previous versions allows remote NNTP servers to execute arbitrary code via certain article headers containing Asian characters that cause Lynx to add extra escape (ESC) characters.
Invisible-island Lynx
Debian Debian Linux 3.1
Debian Debian Linux 3.0
1 EDB exploit
NA
CVE-2007-5339
Multiple vulnerabilities in Mozilla Firefox prior to 2.0.0.8, Thunderbird prior to 2.0.0.8, and SeaMonkey prior to 1.1.5 allow remote malicious users to cause a denial of service (crash) via crafted HTML that triggers memory corruption or assert errors.
Mozilla Seamonkey
Mozilla Thunderbird
Mozilla Firefox
NA
CVE-2007-5340
Multiple vulnerabilities in the Javascript engine in Mozilla Firefox prior to 2.0.0.8, Thunderbird prior to 2.0.0.8, and SeaMonkey prior to 1.1.5 allow remote malicious users to cause a denial of service (crash) via crafted HTML that triggers memory corruption.
Mozilla Seamonkey
Mozilla Thunderbird
Mozilla Firefox
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »