CVE-2006-1733
Published Apr 14, 2006
Last updated 6 years ago
Overview
- Description
- Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 does not properly protect the compilation scope of privileged built-in XBL bindings, which allows remote attackers to execute arbitrary code via the (1) valueOf.call or (2) valueOf.apply methods of an XBL binding, or (3) "by inserting an XBL method into the DOM's document.body prototype chain."
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 6.8
- Impact score
- 6.4
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-264
Evaluator
- Comment
- -
- Impact
- -
- Solution
- -
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4461B287-CF95-44A0-8517-4423636CABBA", "versionEndIncluding": "1.0.7" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5A545A77-2198-4685-A87F-E0F2DAECECF6" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "778FAE0C-A5CF-4B67-93A9-1A803E3E699F" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7447185-7509-449D-8907-F30A42CF7EB5" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EDBAC37-9D08-44D1-B279-BC6ACF126CAF" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3FFF89FA-2020-43CC-BACD-D66117B3DD26" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "834BB391-5EB5-43A8-980A-D305EDAE6FA7" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9A38AD88-BAA6-4FBE-885B-69E951BD1EFE" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ABB88E86-6E83-4A59-9266-8B98AA91774D" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.5:beta1:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E19ED1CA-DEBD-4786-BA7B-C122C7D2E5B7" }, { "criteria": "cpe:2.3:a:mozilla:firefox:1.5:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66BE50FE-EA21-4633-A181-CD35196DF06E" }, { "criteria": "cpe:2.3:a:mozilla:mozilla_suite:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EF9D2443-9389-42B0-BF93-3ADC1B7325EC", "versionEndIncluding": "1.7.12" }, { "criteria": "cpe:2.3:a:mozilla:mozilla_suite:1.7.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B220F04-0B11-4171-8E1E-1F01668661C8" }, { "criteria": "cpe:2.3:a:mozilla:mozilla_suite:1.7.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4751BA65-0CEF-46B8-A15F-A86F411890B0" }, { "criteria": "cpe:2.3:a:mozilla:mozilla_suite:1.7.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "95047540-D109-494F-930A-D6593EDE00C9" }, { "criteria": "cpe:2.3:a:mozilla:mozilla_suite:1.7.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0846804-2FA2-4D78-B3DD-67E5363B13C6" }, { "criteria": "cpe:2.3:a:mozilla:mozilla_suite:1.7.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "633B1DF5-FC67-428E-B4C7-9AC232F59FDC" }, { "criteria": "cpe:2.3:a:mozilla:seamonkey:*:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5832619D-0D24-45AB-90ED-74FC96CF8436", "versionEndIncluding": "1.0" }, { "criteria": "cpe:2.3:a:mozilla:seamonkey:1.0:*:alpha:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D62F740C-706B-4290-AD92-3ECBC3D30768" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A18B07F4-E46B-4BA9-BFBF-16754CD71C31", "versionEndIncluding": "1.0.7" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "055D1044-9FC5-45AA-8407-649E96C5AFE3" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C1C87A5-C14D-4A23-B865-3BB1FCDC8470" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C4DB0BB-BFD7-4E7A-B3EF-9C5422602216" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0D56153-E20A-46D8-859E-A51E5C03D674" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2C51A6F4-F88F-4BF2-BF71-5DC48559C085" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FFC390CB-774C-47BE-95C3-059943A9E645" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.5:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "379F6A73-B45F-4094-8167-4E929FFB1749" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B71DE7AC-553B-4524-8B33-5605518449EB" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4FB87608-0DF8-4729-95C5-CFA386AB3AC2" }, { "criteria": "cpe:2.3:a:mozilla:thunderbird:1.5:beta2:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A406214-29E5-4E13-B2E1-1CF72F1E60BC" } ], "operator": "OR" } ] } ]