|
Vulnerability Report: Mozilla Firefox 0.x
|
This vulnerability report for Mozilla Firefox 0.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in Mozilla Firefox 0.x then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
| Vendor |
Mozilla Organization
|
|
|
Product Link
|
View Here (Link to external site)
|
|
|
Affected By
|
39 Secunia advisories
136 Vulnerabilities
|
|
|
Monitor Product
|
Receive alerts for this product
|
|
|
Unpatched
|
3% (1 of 39 Secunia advisories)
|
|
Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Mozilla Firefox 0.x, with all vendor patches applied, is rated Less critical .
|
|
|
|
|
|
39 Secunia Advisories in 2003-2009
|
Secunia has issued a total of 39 Secunia advisories in 2003-2009 for Mozilla Firefox 0.x. Currently, 3% (1 out of 39) are marked as unpatched with the most severe being rated Less critical 
More information about the specific Secunia advisories affecting Mozilla Firefox 0.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2006-09-15 |
Secunia Advisory ID: SA21906 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing DoS System access
|
Where: From remote |
|
Short Description: Some vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to conduct man-in-the-middle, spoofing, and cross-site scripting attacks, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-07-27 |
Secunia Advisory ID: SA19873 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting DoS System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Mozilla Firefox, which can be exploited by malicious people to conduct cross-site scripting attacks or compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-06-02 |
Secunia Advisory ID: SA20376 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Firefox, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting and HTTP response smuggling attacks, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-05-23 |
Secunia Advisory ID: SA20244 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information
|
Where: From remote |
|
Short Description: A weakness has been discovered in Firefox, which can be exploited by malicious people to disclose system information. [Read More]
|
|
|
|
|
|
Release Date: 2006-04-14 |
Secunia Advisory ID: SA19631 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Firefox, which can be exploited by malicious people to conduct cross-site scripting and phishing attacks, bypass certain security restrictions, disclose sensitive information, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2006-02-02 |
Secunia Advisory ID: SA18700 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Exposure of system information Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Firefox, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, potentially disclose sensitive information, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-23 |
Secunia Advisory ID: SA16911 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing Manipulation of data System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Firefox, which can be exploited by malicious people to conduct spoofing attacks, manipulate certain data, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-13 |
Secunia Advisory ID: SA16043 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Firefox, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-21 |
Secunia Advisory ID: SA15489 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered a vulnerability in Mozilla, Firefox, and Camino, which can be exploited by malicious web sites to spoof dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-12 |
Secunia Advisory ID: SA12979 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered two vulnerabilities in Mozilla Firefox, which can be exploited by malicious people to spoof file types in the file download dialog. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-18 |
Secunia Advisory ID: SA14938 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Firefox, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-04 |
Secunia Advisory ID: SA14820 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: A vulnerability has been discovered in Mozilla Firefox, which can be exploited by malicious people to gain knowledge of potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-24 |
Secunia Advisory ID: SA14654 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass System access
|
Where: From remote |
|
Short Description: Three vulnerabilities have been reported in Firefox, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-14 |
Secunia Advisory ID: SA14565 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: bitlance winter has discovered a weakness in Firefox, which can be exploited by malicious people to trick users into saving malicious files by obfuscating URLs. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-01 |
Secunia Advisory ID: SA13258 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered a vulnerability in Mozilla and Mozilla Firefox, which can be exploited by malicious people to trick users into downloading malicious files. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-01 |
Secunia Advisory ID: SA14407 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing Manipulation of data Exposure of system information Exposure of sensitive information Privilege escalation System access
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Firefox, Mozilla and Thunderbird. These can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges and by malicious people to conduct spoofing attacks, disclose and manipulate sensitive information, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-01 |
Secunia Advisory ID: SA14406 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Paul has discovered a vulnerability in Mozilla Firefox, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-02-08 |
Secunia Advisory ID: SA14160 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: mikx has discovered three vulnerabilities in Mozilla and Firefox, which can be exploited by malicious people to plant malware on a user's system, conduct cross-site scripting attacks, disclose sensitive information, bypass certain security restrictions and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-02-07 |
Secunia Advisory ID: SA14163 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Eric Johanson has reported a security issue in Mozilla / Firefox / Camino / Thunderbird, which can be exploited by a malicious web site to spoof the URL displayed in the address bar, SSL certificate, and status bar. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-31 |
Secunia Advisory ID: SA14017 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Firefox, Mozilla and Thunderbird. These can be exploited by malicious people to bypass certain security restrictions, conduct spoofing and script insertion attacks and disclose sensitive and system information. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-12 |
Secunia Advisory ID: SA13786 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: mikx has discovered a weakness in Mozilla and Mozilla Firefox, which potentially can be exploited by malicious people to trick users into performing unintended actions. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-08 |
Secunia Advisory ID: SA13129 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has reported a vulnerability in Mozilla / Mozilla Firefox, which can be exploited by malicious people to spoof the content of websites. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-10 |
Secunia Advisory ID: SA13144 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of system information Exposure of sensitive information Privilege escalation DoS
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Mozilla Firefox. These can potentially be exploited to detect the presence of local files, cause a DoS (Denial of Service), disclose sensitive information, spoof the file download dialog, and gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-25 |
Secunia Advisory ID: SA12956 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Martin has reported a vulnerability in Mozilla, Firefox, and Thunderbird, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-20 |
Secunia Advisory ID: SA12712 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered two vulnerabilities in Mozilla, Mozilla Firefox, and Camino, which can be exploited by malicious web sites to obtain sensitive information and spoof dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-04 |
Secunia Advisory ID: SA12708 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Alex Vincent has reported a vulnerability in Mozilla Firefox, which can be exploited by malicious people to delete files on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-18 |
Secunia Advisory ID: SA12580 |
Solution Status: Vendor Workaround |
|
Criticality:
 |
Impact: Hijacking
|
Where: From remote |
|
Short Description: WESTPOINT has reported a vulnerability in Mozilla / Mozilla Firefox, which potentially can be exploited by malicious people to conduct session fixation attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-14 |
Secunia Advisory ID: SA12526 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Mozilla, Mozilla Firefox, and Thunderbird. These can potentially be exploited by malicious people to conduct cross-site scripting attacks, access and modify sensitive information, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-30 |
Secunia Advisory ID: SA12403 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla / Mozilla Firefox, which can be exploited by malicious people to conduct phishing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-05 |
Secunia Advisory ID: SA12232 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Mozilla has confirmed some vulnerabilities in Mozilla, Mozilla Firefox, and Mozilla Thunderbird, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-04 |
Secunia Advisory ID: SA10856 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: The vendor has released details about some older vulnerabilities in Mozilla, Mozilla Firefox, and Thunderbird. These can potentially be exploited by malicious people to conduct spoofing attacks, compromise a vulnerable system, or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-07-30 |
Secunia Advisory ID: SA12188 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla and Mozilla Firefox, allowing malicious websites to spoof the user interface. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-26 |
Secunia Advisory ID: SA12160 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Emmanouel Kellinis has reported a vulnerability in Mozilla and Mozilla Firefox, allowing malicious sites to abuse SSL certificates of other sites. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-16 |
Secunia Advisory ID: SA12076 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Marcel Boesch has reported a vulnerability in Mozilla and Firefox, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-07-09 |
Secunia Advisory ID: SA12027 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Joshua Perrymon has reported a vulnerability in Mozilla, Mozilla Firefox, and Mozilla Thunderbird, allowing malicious websites to use Windows "shell:" functionality. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-05 |
Secunia Advisory ID: SA11999 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Jesse Ruderman has reported a security issue in Mozilla and Mozilla Firefox, allowing malicious websites to trick users into accepting security dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-01 |
Secunia Advisory ID: SA11978 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A 6 year old vulnerability has been discovered in multiple browsers, allowing malicious people to spoof the content of websites. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-14 |
Secunia Advisory ID: SA11856 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A weakness has been reported in Mozilla, allowing malicious people to conduct phishing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-13 |
Secunia Advisory ID: SA11602 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: A vulnerability has been reported in various browsers, which can be exploited by malicious people to create or truncate files on a user's system. [Read More]
|
|
|