7.5
CVSSv2

CVE-2008-5504

Published: 17/12/2008 Updated: 13/02/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Mozilla Firefox 2.x prior to 2.0.0.19 allows remote malicious users to run arbitrary JavaScript with chrome privileges via vectors related to the feed preview, a different vulnerability than CVE-2008-3836.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 2.0.0.12

mozilla firefox 2.0.0.2

mozilla firefox 2.0.0.7

mozilla firefox 2.0.0.9

mozilla firefox 2.0.0.16

mozilla firefox 2.0.0.17

mozilla firefox 2.0.0.15

mozilla firefox 2.0

mozilla firefox 2.0.0.14

mozilla firefox 2.0.0.3

mozilla firefox 2.0.0.6

mozilla firefox 2.0.0.11

mozilla firefox 2.0.0.4

mozilla firefox 2.0.0.13

mozilla firefox 2.0.0.1

mozilla firefox 2.0.0.8

mozilla firefox

mozilla firefox 2.0.0.5

mozilla firefox 2.0.0.10

Vendor Advisories

Synopsis Critical: seamonkey security update Type/Severity Security Advisory: Critical Topic Updated seamonkey packages that fix security issues are now available forRed Hat Enterprise Linux 21, Red Hat Enterprise Linux 3, and Red HatEnterprise Linux 4This update has been rated as having critical security ...
Several flaws were discovered in the browser engine These problems could allow an attacker to crash the browser and possibly execute arbitrary code with user privileges (CVE-2008-5500) ...
Several remote vulnerabilities have been discovered in the Iceweasel web browser, an unbranded version of the Firefox browser The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2008-5500 Jesse Ruderman discovered that the layout engine is vulnerable to DoS attacks that might trigger memory corruption and ...
Mozilla Foundation Security Advisory 2008-62 Additional XSS attack vectors in feed preview Announced December 16, 2008 Reporter moz_bug_r_a4 Impact Critical Products Firefox Fixed in ...