CVE-2011-3004

CVSS v2.0 4.3 (Medium)
43% Progress
EPSS 0.30 % (70th)
0.30% Progress
Affected Products 2
Advisories 3

The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey before 2.4 does not properly handle XPCNativeWrappers during calls to the loadSubScript method in an add-on, which makes it easier for remote attackers to gain privileges via a crafted web site that leverages certain unwrapping behavior.

Weaknesses
CWE-20
Improper Input Validation
Related CVEs
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2011-09-29 00:55:01
(13 years ago)
Updated Date
2017-09-19 01:33:30
(7 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox 4.0 cpe:2.3:a:mozilla:firefox:4.0
  Mozilla Firefox 4.0 Beta1 cpe:2.3:a:mozilla:firefox:4.0:beta1
  Mozilla Firefox 4.0 Beta10 cpe:2.3:a:mozilla:firefox:4.0:beta10
  Mozilla Firefox 4.0 Beta11 cpe:2.3:a:mozilla:firefox:4.0:beta11
  Mozilla Firefox 4.0 Beta12 cpe:2.3:a:mozilla:firefox:4.0:beta12
  Mozilla Firefox 4.0 Beta2 cpe:2.3:a:mozilla:firefox:4.0:beta2
  Mozilla Firefox 4.0 Beta3 cpe:2.3:a:mozilla:firefox:4.0:beta3
  Mozilla Firefox 4.0 Beta4 cpe:2.3:a:mozilla:firefox:4.0:beta4
  Mozilla Firefox 4.0 Beta5 cpe:2.3:a:mozilla:firefox:4.0:beta5
  Mozilla Firefox 4.0 Beta6 cpe:2.3:a:mozilla:firefox:4.0:beta6
  Mozilla Firefox 4.0 Beta7 cpe:2.3:a:mozilla:firefox:4.0:beta7
  Mozilla Firefox 4.0 Beta8 cpe:2.3:a:mozilla:firefox:4.0:beta8
  Mozilla Firefox 4.0 Beta9 cpe:2.3:a:mozilla:firefox:4.0:beta9
  Mozilla Firefox 4.0.1 cpe:2.3:a:mozilla:firefox:4.0.1
  Mozilla Firefox 5.0 cpe:2.3:a:mozilla:firefox:5.0
  Mozilla Firefox 6.0 cpe:2.3:a:mozilla:firefox:6.0

Configuration #2

    CPE23 From Up To
  Mozilla Seamonkey 2.3.3 and prior versions cpe:2.3:a:mozilla:seamonkey <= 2.3.3
  Mozilla Seamonkey 1.0 cpe:2.3:a:mozilla:seamonkey:1.0
  Mozilla Seamonkey 1.0 Alpha Edition cpe:2.3:a:mozilla:seamonkey:1.0:*:alpha
  Mozilla Seamonkey 1.0 Beta Edition cpe:2.3:a:mozilla:seamonkey:1.0:*:beta
  Mozilla Seamonkey 1.0 Dev Edition cpe:2.3:a:mozilla:seamonkey:1.0:*:dev
  Mozilla Seamonkey 1.0 Alpha cpe:2.3:a:mozilla:seamonkey:1.0:alpha
  Mozilla Seamonkey 1.0 Beta cpe:2.3:a:mozilla:seamonkey:1.0:beta
  Mozilla Seamonkey 1.0.1 cpe:2.3:a:mozilla:seamonkey:1.0.1
  Mozilla Seamonkey 1.0.2 cpe:2.3:a:mozilla:seamonkey:1.0.2
  Mozilla Seamonkey 1.0.3 cpe:2.3:a:mozilla:seamonkey:1.0.3
  Mozilla Seamonkey 1.0.4 cpe:2.3:a:mozilla:seamonkey:1.0.4
  Mozilla Seamonkey 1.0.5 cpe:2.3:a:mozilla:seamonkey:1.0.5
  Mozilla Seamonkey 1.0.6 cpe:2.3:a:mozilla:seamonkey:1.0.6
  Mozilla Seamonkey 1.0.7 cpe:2.3:a:mozilla:seamonkey:1.0.7
  Mozilla Seamonkey 1.0.8 cpe:2.3:a:mozilla:seamonkey:1.0.8
  Mozilla Seamonkey 1.0.9 cpe:2.3:a:mozilla:seamonkey:1.0.9
  Mozilla Seamonkey 1.0.99 cpe:2.3:a:mozilla:seamonkey:1.0.99
  Mozilla Seamonkey 1.1 cpe:2.3:a:mozilla:seamonkey:1.1
  Mozilla Seamonkey 1.1 Alpha cpe:2.3:a:mozilla:seamonkey:1.1:alpha
  Mozilla Seamonkey 1.1 Beta cpe:2.3:a:mozilla:seamonkey:1.1:beta
  Mozilla Seamonkey 1.1.1 cpe:2.3:a:mozilla:seamonkey:1.1.1
  Mozilla Seamonkey 1.1.2 cpe:2.3:a:mozilla:seamonkey:1.1.2
  Mozilla Seamonkey 1.1.3 cpe:2.3:a:mozilla:seamonkey:1.1.3
  Mozilla Seamonkey 1.1.4 cpe:2.3:a:mozilla:seamonkey:1.1.4
  Mozilla Seamonkey 1.1.5 cpe:2.3:a:mozilla:seamonkey:1.1.5
  Mozilla Seamonkey 1.1.5 1.1.10 cpe:2.3:a:mozilla:seamonkey:1.1.5:1.1.10
  Mozilla Seamonkey 1.1.6 cpe:2.3:a:mozilla:seamonkey:1.1.6
  Mozilla Seamonkey 1.1.7 cpe:2.3:a:mozilla:seamonkey:1.1.7
  Mozilla Seamonkey 1.1.8 cpe:2.3:a:mozilla:seamonkey:1.1.8
  Mozilla Seamonkey 1.1.9 cpe:2.3:a:mozilla:seamonkey:1.1.9
  Mozilla Seamonkey 1.1.10 cpe:2.3:a:mozilla:seamonkey:1.1.10
  Mozilla Seamonkey 1.1.11 cpe:2.3:a:mozilla:seamonkey:1.1.11
  Mozilla Seamonkey 1.1.12 cpe:2.3:a:mozilla:seamonkey:1.1.12
  Mozilla Seamonkey 1.1.13 cpe:2.3:a:mozilla:seamonkey:1.1.13
  Mozilla Seamonkey 1.1.14 cpe:2.3:a:mozilla:seamonkey:1.1.14
  Mozilla Seamonkey 1.1.15 cpe:2.3:a:mozilla:seamonkey:1.1.15
  Mozilla Seamonkey 1.1.16 cpe:2.3:a:mozilla:seamonkey:1.1.16
  Mozilla Seamonkey 1.1.17 cpe:2.3:a:mozilla:seamonkey:1.1.17
  Mozilla Seamonkey 1.1.18 cpe:2.3:a:mozilla:seamonkey:1.1.18
  Mozilla Seamonkey 1.1.19 cpe:2.3:a:mozilla:seamonkey:1.1.19
  Mozilla Seamonkey 1.5.0.8 cpe:2.3:a:mozilla:seamonkey:1.5.0.8
  Mozilla Seamonkey 1.5.0.9 cpe:2.3:a:mozilla:seamonkey:1.5.0.9
  Mozilla Seamonkey 1.5.0.10 cpe:2.3:a:mozilla:seamonkey:1.5.0.10
  Mozilla Seamonkey 2.0 cpe:2.3:a:mozilla:seamonkey:2.0
  Mozilla Seamonkey 2.0 Alpha 1 cpe:2.3:a:mozilla:seamonkey:2.0:alpha_1
  Mozilla Seamonkey 2.0 Alpha 2 cpe:2.3:a:mozilla:seamonkey:2.0:alpha_2
  Mozilla Seamonkey 2.0 Alpha 3 cpe:2.3:a:mozilla:seamonkey:2.0:alpha_3
  Mozilla Seamonkey 2.0 Beta 1 cpe:2.3:a:mozilla:seamonkey:2.0:beta_1
  Mozilla Seamonkey 2.0 Beta 2 cpe:2.3:a:mozilla:seamonkey:2.0:beta_2
  Mozilla Seamonkey 2.0 Rc1 cpe:2.3:a:mozilla:seamonkey:2.0:rc1
  Mozilla Seamonkey 2.0 Rc2 cpe:2.3:a:mozilla:seamonkey:2.0:rc2
  Mozilla Seamonkey 2.0.1 cpe:2.3:a:mozilla:seamonkey:2.0.1
  Mozilla Seamonkey 2.0.2 cpe:2.3:a:mozilla:seamonkey:2.0.2
  Mozilla Seamonkey 2.0.3 cpe:2.3:a:mozilla:seamonkey:2.0.3
  Mozilla Seamonkey 2.0.4 cpe:2.3:a:mozilla:seamonkey:2.0.4
  Mozilla Seamonkey 2.0.5 cpe:2.3:a:mozilla:seamonkey:2.0.5
  Mozilla Seamonkey 2.0.6 cpe:2.3:a:mozilla:seamonkey:2.0.6
  Mozilla Seamonkey 2.0.7 cpe:2.3:a:mozilla:seamonkey:2.0.7
  Mozilla Seamonkey 2.0.8 cpe:2.3:a:mozilla:seamonkey:2.0.8
  Mozilla Seamonkey 2.0.9 cpe:2.3:a:mozilla:seamonkey:2.0.9
  Mozilla Seamonkey 2.0.10 cpe:2.3:a:mozilla:seamonkey:2.0.10
  Mozilla Seamonkey 2.0.11 cpe:2.3:a:mozilla:seamonkey:2.0.11
  Mozilla Seamonkey 2.0.12 cpe:2.3:a:mozilla:seamonkey:2.0.12
  Mozilla Seamonkey 2.0.13 cpe:2.3:a:mozilla:seamonkey:2.0.13
  Mozilla Seamonkey 2.0.14 cpe:2.3:a:mozilla:seamonkey:2.0.14
  Mozilla Seamonkey 2.0a1 Pre Edition cpe:2.3:a:mozilla:seamonkey:2.0a1:*:pre
  Mozilla Seamonkey 2.0a1pre cpe:2.3:a:mozilla:seamonkey:2.0a1pre
  Mozilla Seamonkey 2.1 Alpha1 cpe:2.3:a:mozilla:seamonkey:2.1:alpha1
  Mozilla Seamonkey 2.1 Alpha2 cpe:2.3:a:mozilla:seamonkey:2.1:alpha2
  Mozilla Seamonkey 2.1 Alpha3 cpe:2.3:a:mozilla:seamonkey:2.1:alpha3
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...