Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2007-3736

Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 2.0.0.5 allows remote attackers to inject arbitrary web script "into another site's context" via a "timing issue" involving the (1) addEventListener or (2) setTimeout function, probably by setting events that activate after the context has changed.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.026
EPSS Ranking 85.3%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2007-3736
  • Mozilla » Firefox » Version: 2.0
    cpe:2.3:a:mozilla:firefox:2.0
  • Mozilla » Firefox » Version: 2.0.0.1
    cpe:2.3:a:mozilla:firefox:2.0.0.1
  • Mozilla » Firefox » Version: 2.0.0.2
    cpe:2.3:a:mozilla:firefox:2.0.0.2
  • Mozilla » Firefox » Version: 2.0.0.3
    cpe:2.3:a:mozilla:firefox:2.0.0.3
  • Mozilla » Firefox » Version: 2.0.0.4
    cpe:2.3:a:mozilla:firefox:2.0.0.4


Contact Us

Shodan ® - All rights reserved