5
CVSSv2

CVE-2012-0445

Published: 01/02/2012 Updated: 19/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Mozilla Firefox 4.x up to and including 9.0, Thunderbird 5.0 up to and including 9.0, and SeaMonkey prior to 2.7 allow remote malicious users to bypass the HTML5 frame-navigation policy and replace arbitrary sub-frames by creating a form submission target with a sub-frame's name attribute.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 4.0

mozilla firefox 8.0.1

mozilla firefox 9.0

mozilla firefox 4.0.1

mozilla firefox 6.0.2

mozilla firefox 7.0

mozilla firefox 5.0

mozilla firefox 6.0

mozilla firefox 6.0.1

mozilla firefox 5.0.1

mozilla firefox 8.0

mozilla thunderbird 8.0

mozilla thunderbird 9.0

mozilla thunderbird 6.0.2

mozilla thunderbird 6.0.1

mozilla thunderbird 5.0

mozilla thunderbird 6.0

mozilla thunderbird 7.0

mozilla seamonkey 2.6.1

mozilla seamonkey 2.6

mozilla seamonkey 2.5

mozilla seamonkey 2.3.2

mozilla seamonkey 2.3.1

mozilla seamonkey 2.2

mozilla seamonkey 2.1

mozilla seamonkey 2.0.14

mozilla seamonkey 2.0.7

mozilla seamonkey 2.0.6

mozilla seamonkey 2.0

mozilla seamonkey 1.1.17

mozilla seamonkey 1.1.16

mozilla seamonkey 1.1.9

mozilla seamonkey 1.1.8

mozilla seamonkey 1.1

mozilla seamonkey 1.0.4

mozilla seamonkey 1.0.3

mozilla seamonkey 2.7

mozilla seamonkey 2.4

mozilla seamonkey 2.3

mozilla seamonkey 2.0.11

mozilla seamonkey 2.0.10

mozilla seamonkey 2.0.3

mozilla seamonkey 2.0.2

mozilla seamonkey 1.1.13

mozilla seamonkey 1.1.12

mozilla seamonkey 1.1.5

mozilla seamonkey 1.1.4

mozilla seamonkey 1.0.8

mozilla seamonkey 1.0.7

mozilla seamonkey 1.0

mozilla seamonkey

mozilla seamonkey 2.4.1

mozilla seamonkey 2.0.13

mozilla seamonkey 2.0.12

mozilla seamonkey 2.0.5

mozilla seamonkey 2.0.4

mozilla seamonkey 1.1.15

mozilla seamonkey 1.1.14

mozilla seamonkey 1.1.7

mozilla seamonkey 1.1.6

mozilla seamonkey 1.0.9

mozilla seamonkey 1.0.2

mozilla seamonkey 1.0.1

mozilla seamonkey 2.3.3

mozilla seamonkey 2.0.9

mozilla seamonkey 2.0.8

mozilla seamonkey 2.0.1

mozilla seamonkey 1.1.19

mozilla seamonkey 1.1.18

mozilla seamonkey 1.1.11

mozilla seamonkey 1.1.10

mozilla seamonkey 1.1.3

mozilla seamonkey 1.1.2

mozilla seamonkey 1.1.1

mozilla seamonkey 1.0.6

mozilla seamonkey 1.0.5

Vendor Advisories

Several security issues were fixed in Firefox ...
This update provides compatible ubufox and webfav packages for the latest Firefox ...
This update provides compatible Mozvoikko packages for the latest Firefox ...
Several security issues were fixed in Thunderbird ...
Mozilla Foundation Security Advisory 2012-03 <iframe> element exposed across domains via name attribute Announced January 31, 2012 Reporter Vitaly Nevgen Impact High Products Firefox, SeaMonkey, Thunderbird Fixed ...