Lucene search

K
prionPRIOn knowledge basePRION:CVE-2012-3994
HistoryOct 10, 2012 - 5:55 p.m.

Cross site scripting

2012-10-1017:55:00
PRIOn knowledge base
www.prio-n.com
11

5.9 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

69.3%

Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allow remote attackers to conduct cross-site scripting (XSS) attacks via a binary plugin that uses Object.defineProperty to shadow the top object, and leverages the relationship between top.location and the location property.

5.9 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

69.3%