PT-2007-4980 · Mozilla+2 · Firefox+2

Publicado

2007-07-18

·

Atualizado

2024-12-12

·

CVE-2007-3737

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 2.0.0.5
Description The issue allows remote attackers to execute arbitrary code with chrome privileges by calling an event handler from an element outside of a document.
Recommendations For versions prior to 2.0.0.5, update to version 2.0.0.5 or later to resolve the issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-3737
DSA-1337-1
DSA-1338-1
DSA-1339-1
DTSA-45-1
DTSA-47-1
DTSA-51-1
HPSBUX02153
OPENSUSE-SU-2014_1100-1
OPENSUSE-SU-2024:10600-1
OPENSUSE-SU-2024:10601-1
OPENSUSE-SU-2024:14572-1
RHSA-2007:0722
RHSA-2007:0723
RHSA-2007:0724
RHSA-2007_0722
RHSA-2007_0723
RHSA-2007_0724

Produtos afetados

Firefox
Red Hat
Suse