Mozilla Firefox before 2.0.0.5 allows remote attackers to execute arbitrary code with chrome privileges by calling an event handler from an unspecified "element outside of a document."
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade linux-firefoxUpgrade linux-thunderbirdUpgrade linux-seamonkeyUpgrade linux-firefox-develUpgrade mozilla-thunderbirdUpgrade linux-seamonkey-develUpgrade thunderbirdUpgrade mozillaUpgrade linux-mozilla-develUpgrade linux-mozillaUpgrade firefoxUpgrade seamonkeyUpgrade firefox-ja | Dec 10, 2025 | Jul 19, 2007 |
| Gentoo Linux | — | Upgrade www-client/seamonkey.Upgrade net-libs/xulrunner.Upgrade www-client/mozilla-firefox-bin.Upgrade www-client/seamonkey-bin.Upgrade mail-client/mozilla-thunderbird.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/mozilla-firefox. | Oct 30, 2017 | Jul 18, 2007 |
| Mfsa2007 21 | — | Upgrade to Mozilla Firefox version 2.0.0.5 | Jun 14, 2012 | Jul 18, 2007 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 1.1.3 | Feb 3, 2012 | Jul 18, 2007 |
| Oracle_linux | — | Upgrade firefoxUpgrade firefox-devel | Oct 16, 2024 | Jul 18, 2007 |
| Suse | — | Upgrade MozillaFirefox-translationsUpgrade MozillaFirefox-translations-otherUpgrade MozillaFirefoxUpgrade MozillaFirefox-translations-commonUpgrade MozillaFirefox-devel | Feb 17, 2015 | Jul 9, 2013 |
| Ubuntu | — | Upgrade firefox | Nov 8, 2024 | Jul 18, 2007 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub