PT-2012-5236 · Mozilla+1 · Firefox+3

Ehsan.Akhgari

·

Published

2012-10-11

·

Updated

2024-12-12

·

CVE-2012-4192

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Mozilla Firefox version 16.0 Thunderbird version 16.0 SeaMonkey version 2.13
Description A security issue allows remote attackers to bypass the Same Origin Policy and read the properties of a Location object via a crafted web site.
Recommendations For Mozilla Firefox version 16.0, update to a version that fixes this issue. For Thunderbird version 16.0, update to a version that fixes this issue. For SeaMonkey version 2.13, update to a version that fixes this issue.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2012-4192
OPENSUSE-SU-2012_1345-1
OPENSUSE-SU-2014_1100-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:10230-1
OPENSUSE-SU-2024:14572-1

Affected Products

Firefox
Seamonkey
Suse
Thunderbird