[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

Security bypass vulnerability in Mozilla Firefox, Thunderbird and SeaMonkey via a crafted web site - MFSA 2012-81 (Mac OS X)

ID: oval:org.secpod.oval:def:7646Date: (C)2012-10-26   (M)2023-11-19
Class: PATCHFamily: macos




The host is missing a security update according to Mozilla advisory, MFSA 2012-81. The update is required to fix a security bypass vulnerability. A flaw is present in the applications, which fail to properly restrict JSAPI access to the GetProperty function. Successful exploitation could allow attackers to bypass the Same Origin Policy and possibly have unspecified other impact.

Platform:
Apple Mac OS 14
Apple Mac OS 13
Apple Mac OS 12
Apple Mac OS 11
Apple Mac OS X 10.15
Apple Mac OS X 10.14
Apple Mac OS X 10.13
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Product:
Mozilla Firefox
Mozilla SeaMonkey
Mozilla Thunderbird
Reference:
MFSA 2012-81
CVE-2012-3991
CVE    1
CVE-2012-3991
CPE    366
cpe:/a:mozilla:firefox:14.0
cpe:/a:mozilla:firefox:1.5:beta2
cpe:/a:mozilla:thunderbird:11.0
cpe:/a:mozilla:firefox:1.5:beta1
...

© SecPod Technologies