Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows remote attackers to reference remote files and possibly load chrome: URLs by tricking the user into copying or dragging links.
CVSS Details
- CVSS 3.1 Base Score: 3.1
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade thunderbird | Jul 30, 2024 | Jul 29, 2006 |
| Freebsd | — | Upgrade linux-thunderbirdUpgrade thunderbirdUpgrade firefoxUpgrade linux-seamonkeyUpgrade linux-mozilla-develUpgrade linux-firefox-develUpgrade mozillaUpgrade linux-firefoxUpgrade seamonkeyUpgrade linux-mozillaUpgrade mozilla-thunderbird | Dec 10, 2025 | Jul 27, 2006 |
| Gentoo Linux | — | Upgrade www-client/seamonkey.Upgrade www-client/mozilla-firefox.Upgrade mail-client/mozilla-thunderbird.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/mozilla-firefox-bin. | Oct 30, 2017 | Jul 28, 2006 |
| Mfsa2006 52 | — | Upgrade to the latest version of Mozilla FirefoxUpgrade to Mozilla Firefox version 1.5.0.5 | Aug 1, 2006 | Jul 26, 2006 |
| Mfsa2006 56 | — | Upgrade to Mozilla Firefox version 1.5.0.5Upgrade to the latest version of Mozilla Firefox | Aug 1, 2006 | Jul 26, 2006 |
| Ubuntu | — | Upgrade mozilla-thunderbird-locale-caUpgrade mozilla-thunderbird-typeaheadfindUpgrade mozilla-thunderbird-locale-itUpgrade mozilla-thunderbirdUpgrade mozilla-thunderbird-locale-nlUpgrade mozilla-thunderbird-locale-deUpgrade mozilla-thunderbird-locale-plUpgrade mozilla-thunderbird-inspectorUpgrade firefoxUpgrade mozilla-thunderbird-enigmailUpgrade mozilla-thunderbird-locale-frUpgrade mozilla-thunderbird-locale-uk | Nov 8, 2024 | Jul 29, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub