Aller au contenu
Appaloosa Scout

Vulnérabilité · NVD

CVE-2006-4567

N/A

EN Mozilla Firefox before 1.5.0.7 and Thunderbird before 1.5.0.7 makes it easy for users to accept self-signed certificates for the auto-update mechanism, which might allow remote user-assisted attackers to use DNS spoofing to trick users into visiting a malicious site and accepting a malicious certificate for the Mozilla update site, which can then be used to install arbitrary code on the next update.

EPSS 1.79% au-dessus de la médiane percentile 76.3%

Apps suivies liées à cette CVE

Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.

Configurations CPE vulnérables (1)
Vendor Produit Versions
mozilla thunderbird
Toutes plateformes (wildcard)
≤1.5.0.6
Voir sur NVD ↗ Advisory · secunia.com Advisory · www.redhat.com