|
311
|
-
9.3
|
HIGH
|
The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a deni…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4204
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312
|
-
4.3
|
MEDIUM
|
The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4207
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
313
|
-
9.3
|
HIGH
|
Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.1…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-4202
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314
|
-
4.3
|
MEDIUM
|
The evalInSandbox implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 uses an incor…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4201
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
315
|
-
6.4
|
MEDIUM
|
Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 allow remote attackers to bypass the Same O…
|
CWE-74
Injection
|
CVE-2012-4196
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-10-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
316
|
-
4.3
|
MEDIUM
|
The nsLocation::CheckURL function in Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 does n…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4195
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-10-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
317
|
-
4.3
|
MEDIUM
|
Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 do not prevent use of the valueOf method to…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4194
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-10-30
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
318
|
-
6.8
|
MEDIUM
|
Mozilla Firefox before 16.0.1, Firefox ESR 10.x before 10.0.9, Thunderbird before 16.0.1, Thunderbird ESR 10.x before 10.0.9, and SeaMonkey before 2.13.1 omit a security check in the defaultValue fun…
|
CWE-346
Origin Validation Error
|
CVE-2012-4193
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-10-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
319
|
-
9.3
|
HIGH
|
Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey befor…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4188
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
320
|
-
9.3
|
HIGH
|
Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4186
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-10-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|