Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2014-1539

N/A

Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.

EPSS 2.19% above median percentile 80.8%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

Vulnerable CPE configurations (9)
Vendor Product Versions
mozilla thunderbird
All platforms (wildcard)
≤24.6
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
View on NVD ↗ Advisory · www.mozilla.org