Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-0446

EPSS 0.43% · P63
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2012-0446

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to inject arbitrary web script or HTML via a (1) web page or (2) Firefox extension, related to improper enforcement of XPConnect security restrictions for frame scripts that call untrusted objects.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Mozilla Firefox/SeaMonkey/Thunderbird 跨站脚本漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Firefox是一款非常流行的开源WEB浏览器。Thunderbird是一个邮件客户端,支持IMAP、POP邮件协议以及HTML邮件格式。SeaMonkey是开源的Web浏览器、邮件和新闻组客户端、IRC会话客户端和HTML编辑器。 Mozilla Firefox、 SeaMonkey和Thunderbird中存在跨域脚本漏洞。远程攻击者可利用此漏洞绕过同源策略,执行任意脚本代码,获取敏感信息,或者对其它网站启动欺骗攻击。以下版本中存在该漏洞:Firefox 10.0,Thunderbird 10.0和S
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2012-0446

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2012-0446

登录查看更多情报信息。

Same Patch Batch · n/a · 2012-02-01 · 11 CVEs total

CVE-2011-3659Mozilla Firefox/Thunderbird/SeaMonkey 释放后使用内存破坏漏洞
CVE-2011-3670Mozilla Firefox/Thunderbird安全漏洞
CVE-2012-0442Mozilla Firefox/Thunderbird/Seamonkey 远程内存破坏漏洞
CVE-2012-0443Mozilla Firefox/Thunderbird/Seamonkey远程内存破坏漏洞
CVE-2012-0444Mozilla Firefox/Thunderbird/SeaMonkey内存破坏漏洞
CVE-2012-0445Mozilla Firefox/SeaMonkey/Thunderbird安全绕过漏洞
CVE-2012-0447Mozilla Firefox/Thunderbird/SeaMonkey信息泄露漏洞
CVE-2012-0449Mozilla Firefox/SeaMonkey/Thunderbird 远程拒绝服务漏洞
CVE-2012-0450Mozilla Firefox/SeaMonkey安全漏洞
CVE-2012-0809Todd Miller Sudo ‘Sudo_Debug()’本地权限提升漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2012-0446

No comments yet


Leave a comment