Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to execute arbitrary code by using the Object.watch method to access the "clone parent" internal function.
2006-04-14T10:02:00.000
2025-04-03T01:03:51.193
Deferred
CVSSv2: 6.8 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:P/A:P
8.6
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | mozilla | firefox | ≤ 1.0.7 | Yes |
Application | mozilla | firefox | 1.0 | Yes |
Application | mozilla | firefox | 1.0.1 | Yes |
Application | mozilla | firefox | 1.0.2 | Yes |
Application | mozilla | firefox | 1.0.3 | Yes |
Application | mozilla | firefox | 1.0.4 | Yes |
Application | mozilla | firefox | 1.0.5 | Yes |
Application | mozilla | firefox | 1.0.6 | Yes |
Application | mozilla | firefox | 1.5 | Yes |
Application | mozilla | firefox | 1.5 | Yes |
Application | mozilla | firefox | 1.5 | Yes |
Application | mozilla | mozilla_suite | ≤ 1.7.12 | Yes |
Application | mozilla | mozilla_suite | 1.7.6 | Yes |
Application | mozilla | mozilla_suite | 1.7.7 | Yes |
Application | mozilla | mozilla_suite | 1.7.8 | Yes |
Application | mozilla | mozilla_suite | 1.7.10 | Yes |
Application | mozilla | mozilla_suite | 1.7.11 | Yes |
Application | mozilla | seamonkey | ≤ 1.0 | Yes |
Application | mozilla | seamonkey | 1.0 | Yes |
Application | mozilla | thunderbird | ≤ 1.0.7 | Yes |
Application | mozilla | thunderbird | 1.0 | Yes |
Application | mozilla | thunderbird | 1.0.1 | Yes |
Application | mozilla | thunderbird | 1.0.2 | Yes |
Application | mozilla | thunderbird | 1.0.3 | Yes |
Application | mozilla | thunderbird | 1.0.4 | Yes |
Application | mozilla | thunderbird | 1.0.5 | Yes |
Application | mozilla | thunderbird | 1.0.5 | Yes |
Application | mozilla | thunderbird | 1.0.6 | Yes |
Application | mozilla | thunderbird | 1.5 | Yes |
Application | mozilla | thunderbird | 1.5 | Yes |