Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-5024
Description:Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 do not properly escape quote characters used for XML processing, which allows remote attackers to conduct XML injection attacks via the default namespace in an E4X document.
Test IDs: 1.3.6.1.4.1.25623.1.0.61851   1.3.6.1.4.1.25623.1.0.61934   1.3.6.1.4.1.25623.1.0.61900   1.3.6.1.4.1.25623.1.0.61850  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-5024
1021192
http://www.securitytracker.com/id?1021192
256408
http://sunsolve.sun.com/search/document.do?assetkey=1-26-256408-1
32281
http://www.securityfocus.com/bid/32281
32684
http://secunia.com/advisories/32684
32693
http://secunia.com/advisories/32693
32694
http://secunia.com/advisories/32694
32695
http://secunia.com/advisories/32695
32713
http://secunia.com/advisories/32713
32714
http://secunia.com/advisories/32714
32715
http://secunia.com/advisories/32715
32721
http://secunia.com/advisories/32721
32778
http://secunia.com/advisories/32778
32798
http://secunia.com/advisories/32798
32845
http://secunia.com/advisories/32845
32853
http://secunia.com/advisories/32853
33433
http://secunia.com/advisories/33433
33434
http://secunia.com/advisories/33434
34501
http://secunia.com/advisories/34501
ADV-2008-3146
http://www.vupen.com/english/advisories/2008/3146
ADV-2009-0977
http://www.vupen.com/english/advisories/2009/0977
DSA-1669
http://www.debian.org/security/2008/dsa-1669
DSA-1671
http://www.debian.org/security/2008/dsa-1671
DSA-1696
http://www.debian.org/security/2009/dsa-1696
DSA-1697
http://www.debian.org/security/2009/dsa-1697
FEDORA-2008-9667
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00366.html
FEDORA-2008-9669
https://www.redhat.com/archives/fedora-package-announce/2008-November/msg00385.html
MDVSA-2008:228
http://www.mandriva.com/security/advisories?name=MDVSA-2008:228
MDVSA-2008:230
http://www.mandriva.com/security/advisories?name=MDVSA-2008:230
MDVSA-2008:235
http://www.mandriva.com/security/advisories?name=MDVSA-2008:235
RHSA-2008:0976
http://www.redhat.com/support/errata/RHSA-2008-0976.html
RHSA-2008:0977
http://www.redhat.com/support/errata/RHSA-2008-0977.html
RHSA-2008:0978
http://www.redhat.com/support/errata/RHSA-2008-0978.html
SUSE-SA:2008:055
http://lists.opensuse.org/opensuse-security-announce/2008-11/msg00004.html
TA08-319A
http://www.us-cert.gov/cas/techalerts/TA08-319A.html
USN-667-1
http://ubuntu.com/usn/usn-667-1
http://www.mozilla.org/security/announce/2008/mfsa2008-58.html
http://www.mozilla.org/security/announce/2008/mfsa2008-58.html
https://bugzilla.mozilla.org/show_bug.cgi?id=453915
https://bugzilla.mozilla.org/show_bug.cgi?id=453915
oval:org.mitre.oval:def:9063
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9063




© 1998-2025 E-Soft Inc. All rights reserved.