Skip to main content

Vendor/product archive

mozilla / thunderbird CVEs

Beta · best-effort

1,828 CVEs tagged to mozilla / thunderbird639 Critical, 547 High, 616 Medium, 26 Low, 0 Unrated.

CVE-2006-0236

Published Jan 18, 2006

GUI display truncation vulnerability in Mozilla Thunderbird 1.0.2, 1.0.6, and 1.0.7 allows user-assisted attackers to execute arbitrary code via an attachment with a filename cont…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-3402

Published Nov 1, 2005

The SMTP client in Mozilla Thunderbird 1.0.5 BETA, 1.0.7, and possibly other versions, does not notify users when it cannot establish a secure channel with the server, which allow…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2602

Published Aug 17, 2005

Mozilla Thunderbird 1.0 and Firefox 1.0.6 allows remote attackers to obfuscate URIs via a long URI, which causes the address bar to go blank and could facilitate phishing attacks.

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-2353

Published Aug 5, 2005

run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files.

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2005-0148

Published May 2, 2005

Thunderbird before 0.9, when running on Windows systems, uses the default handler when processing javascript: links, which invokes Internet Explorer and may expose the Thunderbird…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-0149

Published Feb 15, 2005

Thunderbird 0.6 through 0.9 and Mozilla 1.7 through 1.7.3 does not obey the network.cookie.disableCookieForMailNews preference, which could allow remote attackers to bypass the us…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0906

Published Dec 31, 2004

The XPInstall installer in Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 sets insecure permissions for certain installed files withi…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0907

Published Dec 31, 2004

The Linux install .tar.gz archives for Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8, create certain files with insecure permissions…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0908

Published Dec 31, 2004

Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows untrusted Javascript code to read and write to the clipboard, and possibly obta…

CVSS 4.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0909

Published Dec 31, 2004

Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 may allow remote attackers to trick users into performing unexpected actions, includin…

CVSS 5.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-2226

Published Dec 31, 2004

Mozilla Mail 1.7.1 and 1.7.3, and Thunderbird before 0.9, when HTML-Mails is enabled, allows remote attackers to determine valid e-mail addresses via an HTML e-mail that reference…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1,801-1,825 of 1,828 CVEsPage 73 of 74