5.8
CVSSv2

CVE-2013-0794

Published: 03/04/2013 Updated: 19/09/2017
CVSS v2 Base Score: 5.8 | Impact Score: 4.9 | Exploitability Score: 8.6
VMScore: 516
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:N

Vulnerability Summary

Mozilla Firefox prior to 20.0 and SeaMonkey prior to 2.17 do not prevent origin spoofing of tab-modal dialogs, which allows remote malicious users to conduct phishing attacks via a crafted web site.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 19.0

mozilla firefox 19.0.1

mozilla firefox

mozilla seamonkey

mozilla seamonkey 2.17

mozilla seamonkey 2.16

mozilla seamonkey 2.16.2

mozilla seamonkey 2.15

mozilla seamonkey 2.15.1

mozilla seamonkey 2.14

mozilla seamonkey 2.15.2

mozilla seamonkey 2.0.1

mozilla seamonkey 2.0

mozilla seamonkey 2.0.6

mozilla seamonkey 2.0.5

mozilla seamonkey 2.10

mozilla seamonkey 2.11

mozilla seamonkey 2.13

mozilla seamonkey 2.12.1

mozilla seamonkey 2.0.8

mozilla seamonkey 2.12

mozilla seamonkey 2.4

mozilla seamonkey 2.4.1

mozilla seamonkey 2.13.1

mozilla seamonkey 2.3

mozilla seamonkey 2.9.1

mozilla seamonkey 2.9

mozilla seamonkey 2.8

mozilla seamonkey 2.5

mozilla seamonkey 2.6

mozilla seamonkey 2.6.1

mozilla seamonkey 2.7

mozilla seamonkey 2.0.11

mozilla seamonkey 2.0.13

mozilla seamonkey 2.10.1

mozilla seamonkey 2.1

mozilla seamonkey 2.0.9

mozilla seamonkey 2.3.1

mozilla seamonkey 2.2

mozilla seamonkey 2.7.2

mozilla seamonkey 2.16.1

mozilla seamonkey 2.0.4

mozilla seamonkey 2.0.12

mozilla seamonkey 2.0.7

mozilla seamonkey 2.7.1

mozilla seamonkey 2.0.3

mozilla seamonkey 2.0.2

mozilla seamonkey 2.0.14

mozilla seamonkey 2.0.10

mozilla seamonkey 2.13.2

mozilla seamonkey 2.3.3

mozilla seamonkey 2.3.2

Vendor Advisories

Firefox could be made to crash or run programs as your login if it opened a malicious website ...
This update provides a compatible version of Unity Firefox Extension for Firefox 20 ...
Mozilla Foundation Security Advisory 2013-37 Bypass of tab-modal dialog origin disclosure Announced April 2, 2013 Reporter shutdown Impact Moderate Products Firefox, SeaMonkey Fixed in ...