Aller au contenu
Appaloosa Scout

Vulnérabilité · NVD

CVE-2006-2783

N/A

EN Mozilla Firefox and Thunderbird before 1.5.0.4 strip the Unicode Byte-order-Mark (BOM) from a UTF-8 page before the page is passed to the parser, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a BOM sequence in the middle of a dangerous tag such as SCRIPT.

EPSS 1.67% au-dessus de la médiane percentile 74.6%

Apps suivies liées à cette CVE

Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.

Configurations CPE vulnérables (1)
Vendor Produit Versions
mozilla thunderbird
Toutes plateformes (wildcard)
≤1.5.0.3
Voir sur NVD ↗ Advisory · rhn.redhat.com Advisory · secunia.com Advisory · www.redhat.com