258881
|
- |
|
plohni
|
an_image_gallery
|
Directory traversal vulnerability in navigation.php in An image gallery 1.0 allows remote attackers to list arbitrary directories via a .. (dot dot) in the path parameter.
|
CWE-22
Path Traversal
|
CVE-2009-3366
|
2017-09-19 10:29 |
2009-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258882
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 3.0.15, and 3.5.x before 3.5.4, allows remote attackers to read form history by forging mouse and keyboard events that leverage the auto-fill feature to populate form fields, i…
|
NVD-CWE-Other
|
CVE-2009-3370
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258883
|
- |
|
mozilla
|
firefox
|
Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.4 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by creating JavaScript w…
|
CWE-399
Resource Management Errors
|
CVE-2009-3371
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258884
|
- |
|
mozilla
|
firefox
|
The XPCVariant::VariantDataToJS function in the XPCOM implementation in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 does not enforce intended restrictions on interaction between chrome…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3374
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258885
|
- |
|
mozilla
|
firefox
|
content/html/document/src/nsHTMLDocument.cpp in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 allows user-assisted remote attackers to bypass the Same Origin Policy and read an arbitrary…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3375
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258886
|
- |
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in liboggz before cf5feeaab69b05e24, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or pos…
|
NVD-CWE-noinfo
|
CVE-2009-3377
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258887
|
- |
|
mozilla
|
firefox
|
The oggplay_data_handle_theora_frame function in media/liboggplay/src/liboggplay/oggplay_data.c in liboggplay, as used in Mozilla Firefox 3.5.x before 3.5.4, attempts to reuse an earlier frame data s…
|
NVD-CWE-Other
|
CVE-2009-3378
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258888
|
- |
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in libvorbis, as used in Mozilla Firefox 3.5.x before 3.5.4, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…
|
NVD-CWE-noinfo
|
CVE-2009-3379
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258889
|
- |
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.0.x before 3.0.15 and 3.5.x before 3.5.4 allow remote attackers to cause a denial of service (memory corruption and app…
|
NVD-CWE-noinfo
|
CVE-2009-3380
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258890
|
- |
|
mozilla
|
firefox
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possi…
|
NVD-CWE-noinfo
|
CVE-2009-3381
|
2017-09-19 10:29 |
2009-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|