Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Mbrubeck

#42062de 53,632
6.4CVSS total
Vulnerabilidades · 1
PT-2012-2581
6.4
2012-03-13
Mozilla · Firefox · CVE-2012-0460
**Name of the Vulnerable Software and Affected Versions** Mozilla Firefox versions 4.x through 10.0 Firefox ESR versions 10.x before 10.0.3 Thunderbird versions 5.0 through 10.0 Thunderbird ESR versions 10.x before 10.0.3 SeaMonkey version before 2.8 **Description** The issue allows remote attackers to spoof the user interface via a crafted web page because the `window.fullScreen` object does not properly restrict write access. **Recommendations** For Mozilla Firefox versions 4.x through 10.0, update to a version after 10.0. For Firefox ESR versions 10.x before 10.0.3, update to version 10.0.3 or later. For Thunderbird versions 5.0 through 10.0, update to a version after 10.0. For Thunderbird ESR versions 10.x before 10.0.3, update to version 10.0.3 or later. For SeaMonkey version before 2.8, update to version 2.8 or later.