Show filters
498 Total Results
Displaying 71-80 of 498
Sort by:
Attacker Value
Unknown

CVE-2013-0790

Disclosure Date: April 03, 2013 (last updated October 05, 2023)
Unspecified vulnerability in the browser engine in Mozilla Firefox before 20.0 on Android allows remote attackers to cause a denial of service (stack memory corruption and application crash) or possibly execute arbitrary code via unknown vectors involving a plug-in.
0
Attacker Value
Unknown

CVE-2013-0792

Disclosure Date: April 03, 2013 (last updated October 05, 2023)
Mozilla Firefox before 20.0 and SeaMonkey before 2.17, when gfx.color_management.enablev4 is used, do not properly handle color profiles during PNG rendering, which allows remote attackers to obtain sensitive information from process memory or cause a denial of service (memory corruption) via a grayscale PNG image.
0
Attacker Value
Unknown

CVE-2013-0797

Disclosure Date: April 03, 2013 (last updated October 22, 2024)
Untrusted search path vulnerability in the Mozilla Updater in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 allows local users to gain privileges via a Trojan horse DLL file in an unspecified directory.
0
Attacker Value
Unknown

CVE-2013-0794

Disclosure Date: April 03, 2013 (last updated October 05, 2023)
Mozilla Firefox before 20.0 and SeaMonkey before 2.17 do not prevent origin spoofing of tab-modal dialogs, which allows remote attackers to conduct phishing attacks via a crafted web site.
0
Attacker Value
Unknown

CVE-2013-0751

Disclosure Date: January 13, 2013 (last updated October 05, 2023)
Mozilla Firefox before 18.0 on Android and SeaMonkey before 2.15 do not restrict a touch event to a single IFRAME element, which allows remote attackers to obtain sensitive information or possibly conduct cross-site scripting (XSS) attacks via a crafted HTML document.
0
Attacker Value
Unknown

CVE-2012-4203

Disclosure Date: November 21, 2012 (last updated October 05, 2023)
The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarklets, which allows user-assisted remote attackers to run arbitrary programs by leveraging a javascript: URL in a bookmark.
0
Attacker Value
Unknown

CVE-2012-4206

Disclosure Date: November 21, 2012 (last updated October 22, 2024)
Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 on Windows allows local users to gain privileges via a Trojan horse DLL in the default downloads directory.
0
Attacker Value
Unknown

CVE-2012-4210

Disclosure Date: November 21, 2012 (last updated October 22, 2024)
The Style Inspector in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 does not properly restrict the context of HTML markup and Cascading Style Sheets (CSS) token sequences, which allows user-assisted remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted stylesheet.
0
Attacker Value
Unknown

CVE-2012-5837

Disclosure Date: November 21, 2012 (last updated October 05, 2023)
The Web Developer Toolbar in Mozilla Firefox before 17.0 executes script with chrome privileges, which allows user-assisted remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string.
0
Attacker Value
Unknown

CVE-2012-4190

Disclosure Date: October 12, 2012 (last updated October 05, 2023)
The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Firefox before 16.0.1 on CyanogenMod 10, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
0