PT-2012-6144 · Mozilla+1 · Firefox+1

Masato Kinugawa

·

Publicado

2012-11-20

·

Atualizado

2024-12-12

·

CVE-2012-5837

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 17.0
Description The issue allows user-assisted remote attackers to conduct cross-site scripting (XSS) attacks via a crafted string, due to the Web Developer Toolbar executing script with chrome privileges.
Recommendations For versions prior to 17.0, update to version 17.0 or later to resolve the issue.

Exploit

Correção

XSS

Code Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2012-5837
OPENSUSE-SU-2014_1100-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:10230-1
OPENSUSE-SU-2024:14572-1

Produtos afetados

Firefox
Suse