Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilité · NVD

CVE-2007-3845

CVE-2007-3845, sévérité Sévérité en attente (CVSS —) : 2 apps suivies concernées, toutes corrigées ou à statut indéterminable en version courante.

Gravité (CVSS)
-
Exploitation
5.7 %

EPSS, prédiction à 30 jours

Apps suivies
2
Encore exposées
0
Exploit public : ExploitDB

EN Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x before 2.0.0.6, and SeaMonkey before 1.1.4 allow remote attackers to execute arbitrary commands via certain vectors associated with launching "a file handling program based on the file extension at the end of the URI," a variant of CVE-2007-4041. NOTE: the vendor states that "it is still possible to launch a filetype handler based on extension rather than the registered protocol handler."

EPSS 5.70% au-dessus de la médiane percentile 92.7%

Apps suivies liées à cette CVE

Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.

Configurations CPE vulnérables (2)
Vendor Produit Versions
mozilla firefox
Toutes plateformes (wildcard)
-
mozilla thunderbird
Toutes plateformes (wildcard)
-
Voir sur NVD ↗