CVE-2004-0908
Last modified
CVE-2004-0908 is a vulnerability of currently unknown severity. Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows untrusted Javascript code to read and write to the clipboard, and possibly obtain sensitive information, via script-generated events such as Ctrl-Ins.. EPSS estimates a 2.45% chance of exploitation in the next 30 days.
Description
Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows untrusted Javascript code to read and write to the clipboard, and possibly obtain sensitive information, via script-generated events such as Ctrl-Ins.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Mozilla | Mozilla | 0.8 |
| Mozilla | Mozilla | 0.9.2 |
| Mozilla | Mozilla | 0.9.2.1 |
| Mozilla | Mozilla | 0.9.3 |
| Mozilla | Mozilla | 0.9.4 |
| Mozilla | Mozilla | 0.9.4.1 |
| Mozilla | Mozilla | 0.9.5 |
| Mozilla | Mozilla | 0.9.6 |
| Mozilla | Mozilla | 0.9.7 |
| Mozilla | Mozilla | 0.9.8 |
| Mozilla | Mozilla | 0.9.9 |
| Mozilla | Mozilla | 0.9.35 |
| Mozilla | Mozilla | 0.9.48 |
| Mozilla | Mozilla | 1.0 |
| Mozilla | Mozilla | 1.0.1 |
| Mozilla | Mozilla | 1.0.2 |
| Mozilla | Mozilla | 1.1 |
| Mozilla | Mozilla | 1.2 |
| Mozilla | Mozilla | 1.2.1 |
| Mozilla | Mozilla | 1.3 |
| Mozilla | Mozilla | 1.3.1 |
| Mozilla | Mozilla | 1.4 |
| Mozilla | Mozilla | 1.4.1 |
| Mozilla | Mozilla | 1.4.2 |
| Mozilla | Mozilla | 1.4.4 |
| Mozilla | Mozilla | 1.5 |
| Mozilla | Mozilla | 1.5.1 |
| Mozilla | Mozilla | 1.6 |
| Mozilla | Mozilla | 1.7 |
| Mozilla | Mozilla | 1.7.1 |
| Mozilla | Mozilla | 1.7.2 |
| Mozilla | Thunderbird | 0.1 |
| Mozilla | Thunderbird | 0.2 |
| Mozilla | Thunderbird | 0.3 |
| Mozilla | Thunderbird | 0.4 |
| Mozilla | Thunderbird | 0.5 |
| Mozilla | Thunderbird | 0.6 |
| Mozilla | Thunderbird | 0.7 |
| Mozilla | Thunderbird | 0.7.1 |
| Mozilla | Thunderbird | 0.7.2 |
References
- http://bugzilla.mozilla.org/show_bug.cgi?id=257523Exploit, Patch
- http://www.kb.cert.org/vuls/id/460528US Government Resource
- http://www.securityfocus.com/bid/11179Exploit, Patch
- http://bugzilla.mozilla.org/show_bug.cgi?id=257523Exploit, Patch
- http://www.kb.cert.org/vuls/id/460528US Government Resource
- http://www.securityfocus.com/bid/11179Exploit, Patch
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-0908?
How severe is CVE-2004-0908?
How do I fix CVE-2004-0908?
Are you affected by CVE-2004-0908?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
