Skip to main content

Vendor/product archive

mozilla / firefox CVEs

Beta · best-effort

3,281 CVEs tagged to mozilla / firefox922 Critical, 970 High, 1,311 Medium, 78 Low, 0 Unrated.

CVE-2008-5021

Published Nov 13, 2008

nsFrameManager in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to cause a denial…

CVSS 9.3 · Critical

CVE-2008-5015

Published Nov 13, 2008

Mozilla Firefox 3.x before 3.0.4 assigns chrome privileges to a file: URI when it is accessed in the same tab from a chrome or privileged about: page, which makes it easier for us…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-5013

Published Nov 13, 2008

Mozilla Firefox 2.x before 2.0.0.18 and SeaMonkey 1.x before 1.1.13 do not properly check when the Flash module has been dynamically unloaded properly, which allows remote attacke…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-4723

Published Oct 23, 2008

Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox 3.0.1 through 3.0.3 allow remote attackers to inject arbitrary web script or HTML via an ftp:// URL for an H…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4324

Published Sep 29, 2008

The user interface event dispatcher in Mozilla Firefox 3.0.3 on Windows XP SP2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4069

Published Sep 24, 2008

The XBM decoder in Mozilla Firefox before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers to read uninitialized memory, and possibly obtain sensitive information in o…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4066

Published Sep 24, 2008

Mozilla Firefox 2.0.0.14, and other versions before 2.0.0.17, allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms and conduct XSS attacks via HTML-e…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2008-4064

Published Sep 24, 2008

Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly…

CVSS 10.0 · Critical
Vendor/product tagsBeta · best-effort

CVE-2008-4063

Published Sep 24, 2008

Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort
Showing 2,926-2,950 of 3,281 CVEsPage 118 of 132