[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Mozilla Products: Cross-origin information leak through web workers - CVE-2014-1487 (Mac OS X)

ID: oval:org.secpod.oval:def:16745Date: (C)2014-02-10   (M)2024-02-19
Class: VULNERABILITYFamily: macos




The Web workers implementation in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, and SeaMonkey before 2.24 allows remote attackers to bypass the Same Origin Policy and obtain sensitive authentication information via vectors involving error messages.

Platform:
Apple Mac OS 14
Apple Mac OS 13
Apple Mac OS 12
Apple Mac OS 11
Apple Mac OS X 10.15
Apple Mac OS X 10.14
Apple Mac OS X 10.13
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Product:
Mozilla Thunderbird
Mozilla SeaMonkey
Mozilla Firefox
Mozilla Firefox ESR
Reference:
CVE-2014-1487
CVE    1
CVE-2014-1487
CPE    518
cpe:/a:mozilla:firefox:14.0
cpe:/a:mozilla:firefox:20.0.1
cpe:/a:mozilla:firefox:3.6.26
cpe:/a:mozilla:firefox:3.6.27
...

© SecPod Technologies