[Forgot Password]
Login  Register Subscribe

24128

 
 

131615

 
 

111666

 
 

909

 
 

87321

 
 

136

Paid content will be excluded from the download.


Download | Alert*
OVAL

Arbitrary code execution vulnerability in Mozilla Firefox, Thunderbird and Seamonkey while handling movement of XBL-backed nodes between documents - MFSA 2013-88

ID: oval:org.secpod.oval:def:15611Date: (C)2013-10-08   (M)2018-06-09
Class: PATCHFamily: windows




The host is missing a security update according to Mozilla advisory, MFSA 2013-88. The update is required to fix a arbitrary code execution vulnerability. A flaw is present in the application, which fails to handle movement of XBL-backed nodes between documents. Successful exploitation could allow attackers to execute arbitrary code.

Platform:
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Microsoft Windows Vista
Microsoft Windows Server 2008
Microsoft Windows 7
Microsoft Windows Server 2008 R2
Microsoft Windows 8
Microsoft Windows 8.1
Microsoft Windows Server 2012
Microsoft Windows Server 2012 R2
Microsoft Windows 10
Product:
Mozilla Thunderbird
Mozilla Thunderbird ESR
Mozilla SeaMonkey
Mozilla Firefox
Mozilla Firefox ESR
Reference:
MFSA 2013-88
CVE-2013-1730
CVE    1
CVE-2013-1730
CPE    142
cpe:/a:mozilla:thunderbird_esr:::x86
cpe:/a:mozilla:seamonkey:2.11:beta3
cpe:/a:mozilla:seamonkey:2.11:beta2
cpe:/a:mozilla:seamonkey:2.11:beta5
...

© SecPod Technologies