Search CVE reports


Toggle filters

2941 – 2950 of 3080 results


CVE-2007-0802

Negligible priority

Some fixes available 2 of 4

Mozilla Firefox 2.0.0.1 allows remote attackers to bypass the Phishing Protection mechanism by adding certain characters to the end of the domain name, as demonstrated by the "." and "/" characters, which is not caught by the...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2007-0801

Medium priority
Fixed

The nsExternalAppHandler::SetUpTempFile function in Mozilla Firefox 1.5.0.9 creates temporary files with predictable filenames based on creation time, which allows remote attackers to execute arbitrary web script or HTML via...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2007-0800

Medium priority

Some fixes available 8 of 9

Cross-zone vulnerability in Mozilla Firefox 1.5.0.9 considers blocked popups to have an internal zone origin, which allows user-assisted remote attackers to cross zone restrictions and read arbitrary file:// URIs by convincing a...

5 affected packages

firefox, iceape, lightning-sunbird, midbrowser, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
iceape
lightning-sunbird
midbrowser
xulrunner
Show less packages

CVE-2006-6954

Medium priority
Ignored

Flock beta 1 0.7 allows remote attackers to cause a denial of service (application crash) via a web page that contains a large number of nested marquee tags, a related issue to CVE-2006-2723.

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2006-6507

Medium priority
Fixed

Mozilla Firefox 2.0 before 2.0.0.1 allows remote attackers to bypass Cross-Site Scripting (XSS) protection via vectors related to a Function.prototype regression error.

4 affected packages

firefox, firefox-granparadiso, lightning-sunbird, midbrowser

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-granparadiso
lightning-sunbird
midbrowser
Show less packages

CVE-2006-6506

Medium priority
Fixed

The "Feed Preview" feature in Mozilla Firefox 2.0 before 2.0.0.1 sends the URL of the feed when requesting favicon.ico icons, which results in a privacy leak that might allow feed viewing services to determine browsing habits.

4 affected packages

firefox, firefox-granparadiso, lightning-sunbird, midbrowser

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-granparadiso
lightning-sunbird
midbrowser
Show less packages

CVE-2006-6504

Medium priority

Some fixes available 9 of 10

Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to execute arbitrary code by appending an SVG comment DOM node to another type of document, which triggers memory corruption.

6 affected packages

firefox, firefox-3.0, iceape, lightning-sunbird, midbrowser, xulrunner

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
iceape
lightning-sunbird
midbrowser
xulrunner
Show less packages

CVE-2006-6503

Medium priority

Some fixes available 12 of 13

Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to bypass cross-site scripting (XSS) protection by changing the src attribute of an IMG...

7 affected packages

firefox, firefox-3.0, iceape, lightning-sunbird, midbrowser...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
iceape
lightning-sunbird
midbrowser
mozilla-thunderbird
xulrunner
Show all 7 packages Show less packages

CVE-2006-6502

Medium priority

Some fixes available 12 of 13

Use-after-free vulnerability in the LiveConnect bridge code for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to cause a denial of service...

7 affected packages

firefox, firefox-3.0, iceape, lightning-sunbird, midbrowser...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
iceape
lightning-sunbird
midbrowser
mozilla-thunderbird
xulrunner
Show all 7 packages Show less packages

CVE-2006-6501

Medium priority

Some fixes available 12 of 13

Unspecified vulnerability in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to gain privileges and install malicious code via the watch...

7 affected packages

firefox, firefox-3.0, iceape, lightning-sunbird, midbrowser...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
iceape
lightning-sunbird
midbrowser
mozilla-thunderbird
xulrunner
Show all 7 packages Show less packages