Lucene search

K
cveRedhatCVE-2008-1233
HistoryMar 27, 2008 - 10:44 a.m.

CVE-2008-1233

2008-03-2710:44:00
CWE-94
redhat
web.nvd.nist.gov
61
mozilla
firefox
thunderbird
seamonkey
vulnerability
xpcnativewrapper pollution
remote code execution
cve-2008-1233

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

9.8

Confidence

High

EPSS

0.455

Percentile

97.5%

Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allows remote attackers to execute arbitrary code via “XPCNativeWrapper pollution.”

Affected configurations

Nvd
Node
mozillafirefoxRange2.0.0.12
OR
mozillaseamonkeyRange1.1.8
OR
mozillathunderbirdRange2.0.0.12
VendorProductVersionCPE
mozillafirefox*cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
mozillaseamonkey*cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:*
mozillathunderbird*cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*

References

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

9.8

Confidence

High

EPSS

0.455

Percentile

97.5%