|
Vulnerability Report: Mozilla 1.7.x
|
This vulnerability report for Mozilla 1.7.x contains a complete overview of all Secunia advisories affecting it. You can use this vulnerability report to ensure that you are aware of all vulnerabilities, both patched and unpatched, affecting this product allowing you to take the necessary precautions.
If you have information about a new or an existing vulnerability in Mozilla 1.7.x then you are more than welcome to contact us.
|
|
|
|
|
Vendor, Links, and Unpatched Vulnerabilities
| Vendor |
Mozilla Organization
|
|
|
Product Link
|
View Here (Link to external site)
|
|
|
Affected By
|
36 Secunia advisories
83 Vulnerabilities
|
|
|
Monitor Product
|
Receive alerts for this product
|
|
|
Unpatched
|
14% (5 of 36 Secunia advisories)
|
|
Most Critical Unpatched
The most severe unpatched Secunia advisory affecting Mozilla 1.7.x, with all vendor patches applied, is rated Less critical .
|
|
|
|
|
|
36 Secunia Advisories in 2003-2009
|
Secunia has issued a total of 36 Secunia advisories in 2003-2009 for Mozilla 1.7.x. Currently, 14% (5 out of 36) are marked as unpatched with the most severe being rated Less critical 
More information about the specific Secunia advisories affecting Mozilla 1.7.x can be found below. Each Secunia advisory is enclosed by a box highlighted with a color representing its current patch status. You can read the complete Secunia advisories for thorough descriptions of the issues covered and for solution suggestions by clicking either the Secunia advisory title or the "Read More" links available for each Secunia advisory.
|
|
|
|
|
|
Release Date: 2006-06-06 |
Secunia Advisory ID: SA20467 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla Suite, which can be exploited by malicious people to trick users into disclosing sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2006-05-23 |
Secunia Advisory ID: SA20256 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Exposure of system information
|
Where: From remote |
|
Short Description: A weakness has been discovered in Mozilla Suite, which can be exploited by malicious people to disclose system information. [Read More]
|
|
|
|
|
|
Release Date: 2006-05-11 |
Secunia Advisory ID: SA20063 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Security Bypass
|
Where: From remote |
|
Short Description: A weakness has been discovered in Mozilla Suite, which can be exploited by malicious people to bypass certain security restrictions. [Read More]
|
|
|
|
|
|
Release Date: 2006-02-02 |
Secunia Advisory ID: SA18703 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing Exposure of sensitive information DoS System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Mozilla Suite, which can be exploited by malicious people to conduct cross-site scripting and phishing attacks, bypass certain security restrictions, disclose sensitive information, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-12-09 |
Secunia Advisory ID: SA17944 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: A weakness has been discovered in Mozilla Suite, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|
|
|
|
Release Date: 2005-09-23 |
Secunia Advisory ID: SA16917 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Spoofing Manipulation of data System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Mozilla Suite, which can be exploited by malicious people to conduct spoofing attacks, manipulate certain data, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-21 |
Secunia Advisory ID: SA16846 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: System access
|
Where: From remote |
|
Short Description: A vulnerability has been discovered in Mozilla Suite, which can be exploited by malicious people to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-09-09 |
Secunia Advisory ID: SA16767 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: A vulnerability has been discovered in Mozilla Suite, which can be exploited by malicious people to cause a DoS (Denial of Service) or to compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-13 |
Secunia Advisory ID: SA16059 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Mozilla Suite, which can be exploited by malicious people to bypass certain security restrictions, conduct cross-site scripting attacks and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-07-13 |
Secunia Advisory ID: SA15551 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: Secunia Research has discovered a vulnerability in Mozilla Suite, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-21 |
Secunia Advisory ID: SA15489 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered a vulnerability in Mozilla, Firefox, and Camino, which can be exploited by malicious web sites to spoof dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2005-06-06 |
Secunia Advisory ID: SA15601 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A seven year old vulnerability has been re-introduced in Mozilla and Firefox, which can be exploited by malicious people to spoof the contents of web sites. [Read More]
|
|
|
|
|
|
Release Date: 2005-05-09 |
Secunia Advisory ID: SA15296 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla Suite, which can be exploited by malicious people to conduct cross-site scripting attacks. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-18 |
Secunia Advisory ID: SA14992 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting System access
|
Where: From remote |
|
Short Description: Multiple vulnerabilities have been reported in Mozilla Suite, which can be exploited by malicious people to conduct cross-site scripting attacks, bypass certain security restrictions, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-04-04 |
Secunia Advisory ID: SA14821 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: A vulnerability has been discovered in Mozilla Suite, which can be exploited by malicious people to gain knowledge of potentially sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-24 |
Secunia Advisory ID: SA14684 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass System access
|
Where: From remote |
|
Short Description: Two vulnerabilities have been reported in Mozilla, which can be exploited by malicious people to bypass certain security restrictions and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-14 |
Secunia Advisory ID: SA14568 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: bitlance winter has discovered a weakness in Mozilla, which can be exploited by malicious people to trick users into saving malicious files by obfuscating URLs. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-01 |
Secunia Advisory ID: SA14407 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing Manipulation of data Exposure of system information Exposure of sensitive information Privilege escalation System access
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Firefox, Mozilla and Thunderbird. These can be exploited by malicious, local users to perform certain actions on a vulnerable system with escalated privileges and by malicious people to conduct spoofing attacks, disclose and manipulate sensitive information, and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-03-01 |
Secunia Advisory ID: SA13258 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered a vulnerability in Mozilla and Mozilla Firefox, which can be exploited by malicious people to trick users into downloading malicious files. [Read More]
|
|
|
|
|
|
Release Date: 2005-02-08 |
Secunia Advisory ID: SA14160 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: mikx has discovered three vulnerabilities in Mozilla and Firefox, which can be exploited by malicious people to plant malware on a user's system, conduct cross-site scripting attacks, disclose sensitive information, bypass certain security restrictions and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2005-02-07 |
Secunia Advisory ID: SA14163 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Eric Johanson has reported a security issue in Mozilla / Firefox / Camino / Thunderbird, which can be exploited by a malicious web site to spoof the URL displayed in the address bar, SSL certificate, and status bar. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-31 |
Secunia Advisory ID: SA14017 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Security Bypass Cross Site Scripting Spoofing Exposure of system information Exposure of sensitive information
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Firefox, Mozilla and Thunderbird. These can be exploited by malicious people to bypass certain security restrictions, conduct spoofing and script insertion attacks and disclose sensitive and system information. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-12 |
Secunia Advisory ID: SA13786 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: mikx has discovered a weakness in Mozilla and Mozilla Firefox, which potentially can be exploited by malicious people to trick users into performing unintended actions. [Read More]
|
|
|
|
|
|
Release Date: 2005-01-04 |
Secunia Advisory ID: SA13599 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered a vulnerability in Mozilla / Mozilla Firefox, which can be exploited by malicious people to spoof the source displayed in the Download Dialog box. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-30 |
Secunia Advisory ID: SA13687 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Maurycy Prodeus has reported a vulnerability in Mozilla and Thunderbird, which can be exploited by malicious people to cause a DoS (Denial of Service) and potentially compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-12-08 |
Secunia Advisory ID: SA13129 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has reported a vulnerability in Mozilla / Mozilla Firefox, which can be exploited by malicious people to spoof the content of websites. [Read More]
|
|
|
|
|
|
Release Date: 2004-11-03 |
Secunia Advisory ID: SA13086 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of system information
|
Where: From remote |
|
Short Description: plonk has discovered a weakness in Mozilla and Thunderbird, which can be exploited by malicious people to enumerate valid email addresses. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-25 |
Secunia Advisory ID: SA12956 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Exposure of sensitive information
|
Where: Local system |
|
Short Description: Martin has reported a vulnerability in Mozilla, Firefox, and Thunderbird, which can be exploited by malicious, local users to gain knowledge of sensitive information. [Read More]
|
|
|
|
|
|
Release Date: 2004-10-20 |
Secunia Advisory ID: SA12712 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Secunia Research has discovered two vulnerabilities in Mozilla, Mozilla Firefox, and Camino, which can be exploited by malicious web sites to obtain sensitive information and spoof dialog boxes. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-18 |
Secunia Advisory ID: SA12580 |
Solution Status: Vendor Workaround |
|
Criticality:
 |
Impact: Hijacking
|
Where: From remote |
|
Short Description: WESTPOINT has reported a vulnerability in Mozilla / Mozilla Firefox, which potentially can be exploited by malicious people to conduct session fixation attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-09-14 |
Secunia Advisory ID: SA12526 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Cross Site Scripting Manipulation of data Exposure of sensitive information System access
|
Where: From remote |
|
Short Description: Details have been released about several vulnerabilities in Mozilla, Mozilla Firefox, and Thunderbird. These can potentially be exploited by malicious people to conduct cross-site scripting attacks, access and modify sensitive information, and compromise a user's system. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-30 |
Secunia Advisory ID: SA12403 |
Solution Status: Unpatched |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla / Mozilla Firefox, which can be exploited by malicious people to conduct phishing attacks. [Read More]
|
|
|
|
|
|
Release Date: 2004-08-05 |
Secunia Advisory ID: SA12232 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS System access
|
Where: From remote |
|
Short Description: Mozilla has confirmed some vulnerabilities in Mozilla, Mozilla Firefox, and Mozilla Thunderbird, which can be exploited by malicious people to cause a DoS (Denial of Service) or compromise a vulnerable system. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-30 |
Secunia Advisory ID: SA12188 |
Solution Status: Partial Fix |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: A vulnerability has been reported in Mozilla and Mozilla Firefox, allowing malicious websites to spoof the user interface. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-26 |
Secunia Advisory ID: SA12160 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: Spoofing
|
Where: From remote |
|
Short Description: Emmanouel Kellinis has reported a vulnerability in Mozilla and Mozilla Firefox, allowing malicious sites to abuse SSL certificates of other sites. [Read More]
|
|
|
|
|
|
Release Date: 2004-07-16 |
Secunia Advisory ID: SA12076 |
Solution Status: Vendor Patch |
|
Criticality:
 |
Impact: DoS
|
Where: From remote |
|
Short Description: Marcel Boesch has reported a vulnerability in Mozilla and Firefox, which can be exploited by malicious people to cause a DoS (Denial of Service). [Read More]
|
|
|