CVE-2012-5841
Mozilla Firefox < 10.0.11 - XSS
Title source: ruleDescription
Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 implement cross-origin wrappers with a filtering behavior that does not properly restrict write actions, which allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site.
References (26)
... and 6 more
Scores
EPSS
0.0091
EPSS Percentile
75.6%
Details
CWE
CWE-79
Status
published
Products (26)
mozilla/firefox
< 10.0.11
mozilla/seamonkey
< 2.14
mozilla/thunderbird
< 17.0
mozilla/thunderbird_esr
< 10.0.11
opensuse/opensuse
opensuse/opensuse
opensuse/opensuse
suse/linux_enterprise_desktop
suse/linux_enterprise_desktop
suse/linux_enterprise_server
... and 16 more
Published
Nov 21, 2012
Tracked Since
Feb 18, 2026