Vulnerability index

Browse CVEs

2,895 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox MEDIUM 6.4
CVE-2006-5462

Mozilla Network Security Service (NSS) library before 3.11.3, as used in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey be…

Patch available
Fix from $1,600 2006-11-08
Firefox MEDIUM 5.0
CVE-2006-5464

Multiple unspecified vulnerabilities in the layout engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 a…

Patch available
Fix from $1,600 2006-11-08
Firefox MEDIUM 5.0
CVE-2006-5748EPSS 6%

Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0…

Patch available
Fix from $1,600 2006-11-08
Firefox HIGH 7.8
CVE-2006-5783

Firefox 1.5.0.7 on Kubuntu Linux allows remote attackers to cause a denial of service (crash) via a long URL in an A tag. NOTE: this issue has been …

No fix yet
Fix from $1,950 2006-11-07
Firefox MEDIUM 5.0
CVE-2006-5633EPSS 7%

Firefox 1.5.0.7 and 2.0, and Seamonkey 1.1b, allows remote attackers to cause a denial of service (crash) by creating a range object using createRang…

No fix yet
Fix from $1,600 2006-10-31
Bugzilla MEDIUM 5.0
CVE-2006-5454

Bugzilla 2.18.x before 2.18.6, 2.20.x before 2.20.3, 2.22.x before 2.22.1, and 2.23.x before 2.23.3 allow remote attackers to obtain (1) the descript…

Patch available
Fix from $1,600 2006-10-23
Firefox HIGH 8.1
CVE-2006-5160

Multiple unspecified vulnerabilities in Mozilla Firefox have unspecified vectors and impact, as claimed during ToorCon 2006. NOTE: the vendor and or…

No fix yet
Fix from $1,950 2006-10-05
Firefox HIGH 7.5
CVE-2006-5159EPSS 6%

Stack-based buffer overflow in Mozilla Firefox allows remote attackers to execute arbitrary code via unspecified vectors involving JavaScript. NOTE:…

No fix yet
Fix from $1,950 2006-10-05
Seamonkey HIGH 10.0
CVE-2006-4571EPSS 6%

Multiple unspecified vulnerabilities in Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allow remote attackers to caus…

Fix: after 1.5.0.6
Fix from $1,950 2006-09-15
Firefox HIGH 9.3
CVE-2006-4565EPSS 6%

Heap-based buffer overflow in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause…

Fix: after 1.5.0.6
Fix from $1,950 2006-09-15
Firefox MEDIUM 5.0
CVE-2006-4566

Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) v…

Fix: after 1.5.0.6
Fix from $1,600 2006-09-15
Firefox HIGH 7.5
CVE-2006-4561

Mozilla Firefox 1.5.0.6 allows remote attackers to execute arbitrary JavaScript in the context of the browser's session with an arbitrary intranet we…

No fix yet
Fix from $1,950 2006-09-06
Firefox HIGH 7.6
CVE-2006-4253EPSS 15%

Concurrency vulnerability in Mozilla Firefox 1.5.0.6 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute ar…

Mitigation only
Fix from $1,950 2006-08-21
Firefox HIGH 7.5
CVE-2006-3113EPSS 6%

Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to cause a denial of service (cras…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3801

Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 does not properly clear a JavaScript reference to a frame or window, which leaves a poi…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3805EPSS 6%

The Javascript engine in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might allow remote attackers to execu…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3808

Mozilla Firefox before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote Proxy AutoConfig (PAC) servers to execute code with elevated privileges via a…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3809

Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows scripts with the UniversalBrowserRead privilege to gain…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3811EPSS 7%

Multiple vulnerabilities in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allow remote attackers to cause a …

Patch available
Fix from $1,950 2006-07-27
Firefox MEDIUM 6.8
CVE-2006-3810

Cross-site scripting (XSS) vulnerability in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote …

Patch available
Fix from $1,600 2006-07-27
Firefox MEDIUM 5.8
CVE-2006-3802

Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to hijack native DOM methods from obje…

Patch available
Fix from $1,600 2006-07-27
Firefox HIGH 7.5
CVE-2006-3677EPSS 78%

Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code by changing certain properties of the…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3806EPSS 5%

Multiple integer overflows in the Javascript engine in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 might a…

Patch available
Fix from $1,950 2006-07-27
Firefox HIGH 7.5
CVE-2006-3807EPSS 5%

Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code via script t…

Patch available
Fix from $1,950 2006-07-27
Firefox MEDIUM 5.1
CVE-2006-3803

Race condition in the JavaScript garbage collection in Mozilla Firefox 1.5 before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 mig…

Patch available
Fix from $1,600 2006-07-27
Seamonkey MEDIUM 5.0
CVE-2006-3804

Heap-based buffer overflow in Mozilla Thunderbird before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to cause a denial of service (cra…

Patch available
Fix from $1,600 2006-07-27
Firefox MEDIUM 6.4
CVE-2006-3352

Cross-domain vulnerability in Mozilla Firefox allows remote attackers to access restricted information from other domains via an object tag with a da…

Mitigation only
Fix from $1,600 2006-07-06
Firefox HIGH 7.5
CVE-2006-2788

Double free vulnerability in the getRawDER function for nsIX509Cert in Firefox allows remote attackers to cause a denial of service (hang) and possib…

Patch available
Fix from $1,950 2006-06-02
Firefox HIGH 9.3
CVE-2006-2787

EvalInSandbox in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to gain privileges via javascript that calls the valueOf meth…

Mitigation only
Fix from $1,950 2006-06-02
Firefox HIGH 9.3
CVE-2006-2779EPSS 7%

Mozilla Firefox and Thunderbird before 1.5.0.4 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1…

Patch available
Fix from $1,950 2006-06-02