Lucene search

K
cveRedhatCVE-2006-1728
HistoryApr 14, 2006 - 10:02 a.m.

CVE-2006-1728

2006-04-1410:02:00
redhat
web.nvd.nist.gov
58
cve-2006-1728
mozilla firefox
thunderbird
mozilla suite
seamonkey
remote code execution
crypto.generatecrmfrequest
vulnerability

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0.261

Percentile

96.8%

Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via unknown vectors related to the crypto.generateCRMFRequest method.

Affected configurations

Nvd
Node
mozillafirefoxRange1.01.0.8
OR
mozillafirefoxRange1.51.5.0.2
OR
mozillamozilla_suiteRange<1.7.13
OR
mozillaseamonkeyRange<1.0.1
OR
mozillathunderbirdRange1.01.0.8
OR
mozillathunderbirdRange1.51.5.0.2
Node
canonicalubuntu_linuxMatch4.10
OR
canonicalubuntu_linuxMatch5.04
OR
canonicalubuntu_linuxMatch5.10
VendorProductVersionCPE
mozillafirefox*cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
mozillamozilla_suite*cpe:2.3:a:mozilla:mozilla_suite:*:*:*:*:*:*:*:*
mozillaseamonkey*cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:*
mozillathunderbird*cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
canonicalubuntu_linux4.10cpe:2.3:o:canonical:ubuntu_linux:4.10:*:*:*:*:*:*:*
canonicalubuntu_linux5.04cpe:2.3:o:canonical:ubuntu_linux:5.04:*:*:*:*:*:*:*
canonicalubuntu_linux5.10cpe:2.3:o:canonical:ubuntu_linux:5.10:*:*:*:*:*:*:*

References

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0.261

Percentile

96.8%