|
Vulnerability Report: Mozilla Firefox 0.x
|
This vulnerability report for Mozilla Firefox 0.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in Mozilla Firefox 0.x then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
| Vendor |
Mozilla Organization
|
|
|
Product Link
|
View Here (Link to external site)
|
|
|
Affected By
|
39 Secunia advisories
136 Vulnerabilities
|
|
|
Monitor Product
|
Receive alerts for this product
|
|
|
Unpatched
|
3% (1 of 39 Secunia advisories)
|
|
Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Mozilla Firefox 0.x, with all vendor patches applied, is rated Less critical .
|
|
|
|
|
|
18 Secunia Advisories in 2004
|
Secunia has issued a total of 18 Secunia advisories in 2004 for Mozilla Firefox 0.x. Currently, 6% (1 out of 18) are marked as unpatched with the most severe being rated Less critical 
More information about the specific Secunia advisories affecting Mozilla Firefox 0.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2004-12-08 |
Secunia Advisory ID: SA13129 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has reported a vulnerability in Mozilla / Mozilla Firefox, which can be exploited by malicious people to spoof the content of websites. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-10 |
Secunia Advisory ID: SA13144 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Exposure of system information Exposure of sensitive information Privilege escalation DoS
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Mozilla Firefox. These can potentially be exploited to detect the presence of local files, cause a DoS (Denial of Service), disclose sensitive information, spoof the file download dialog, and gain escalated privileges. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-25 |
Secunia Advisory ID: SA12956 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Martin has reported a vulnerability in Mozilla, Firefox, and Thunderbird, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-20 |
Secunia Advisory ID: SA12712 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered two vulnerabilities in Mozilla, Mozilla Firefox, and Camino, which can be exploited by malicious web sites to obtain sensitive information and spoof dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-04 |
Secunia Advisory ID: SA12708 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: Alex Vincent has reported a vulnerability in Mozilla Firefox, which can be exploited by malicious people to delete files on a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-18 |
Secunia Advisory ID: SA12580 |
Solution Status: Vendor Workaround |
|
Criticality:
 |
Impact: Hijacking
|
Where: From remote |
|
Short Description: WESTPOINT has reported a vulnerability in Mozilla / Mozilla Firefox, which potentially can be exploited by malicious people to conduct session fixation attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-14 |
Secunia Advisory ID: SA12526 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Mozilla, Mozilla Firefox, and Thunderbird. These can potentially be exploited by malicious people to conduct cross-site scripting attacks, access and modify sensitive information, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-30 |
Secunia Advisory ID: SA12403 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla / Mozilla Firefox, which can be exploited by malicious people to conduct phishing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-05 |
Secunia Advisory ID: SA12232 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Mozilla has confirmed some vulnerabilities in Mozilla, Mozilla Firefox, and Mozilla Thunderbird, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-04 |
Secunia Advisory ID: SA10856 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: The vendor has released details about some older vulnerabilities in Mozilla, Mozilla Firefox, and Thunderbird. These can potentially be exploited by malicious people to conduct spoofing attacks, compromise a vulnerable system, or cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-07-30 |
Secunia Advisory ID: SA12188 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla and Mozilla Firefox, allowing malicious websites to spoof the user interface. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-26 |
Secunia Advisory ID: SA12160 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Emmanouel Kellinis has reported a vulnerability in Mozilla and Mozilla Firefox, allowing malicious sites to abuse SSL certificates of other sites. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-16 |
Secunia Advisory ID: SA12076 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Marcel Boesch has reported a vulnerability in Mozilla and Firefox, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2004-07-09 |
Secunia Advisory ID: SA12027 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: Joshua Perrymon has reported a vulnerability in Mozilla, Mozilla Firefox, and Mozilla Thunderbird, allowing malicious websites to use Windows "shell:" functionality. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-05 |
Secunia Advisory ID: SA11999 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: Jesse Ruderman has reported a security issue in Mozilla and Mozilla Firefox, allowing malicious websites to trick users into accepting security dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-01 |
Secunia Advisory ID: SA11978 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A 6 year old vulnerability has been discovered in multiple browsers, allowing malicious people to spoof the content of websites. [Read More]
|
|
|
|
|
|
Release Date: 2004-06-14 |
Secunia Advisory ID: SA11856 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A weakness has been reported in Mozilla, allowing malicious people to conduct phishing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-05-13 |
Secunia Advisory ID: SA11602 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Manipulation of data
|
Where: From remote |
|
Short Description: A vulnerability has been reported in various browsers, which can be exploited by malicious people to create or truncate files on a user's system. [Read More]
|
|
|