CVE-2013-0757

Scores

EPSS

0.746medium74.6%
0%20%40%60%80%100%

Percentile: 74.6%

CVSS

6.8medium2.0
0246810

CVSS Score: 6.8/10

All CVSS Scores

CVSS 2.0
6.8

Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Description

The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not prevent modifications to the prototype of an object, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges by referencing Object.prototype.proto in a crafted HTML document.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

debiannvdubuntu

CWEs

CWE-20

Exploits

Exploit ID: 41683

Source: exploitdb

URL: https://www.exploit-db.com/exploits/41683

Exploit ID: 41684

Source: exploitdb

URL: https://www.exploit-db.com/exploits/41684

Vulnerable Software (15)

Type: Configuration

Product: firefox

Operating System: ubuntu hardy 8.04

Trait:
{  "unfixed": true}

Source: ubuntu

Type: Configuration

Product: iceape

Operating System: debian

Trait:
{  "unaffected": true}

Source: debian

Type: Configuration

Product: icedove

Operating System: debian

Trait:
{  "unaffected": true}

Source: debian

Type: Configuration

Product: iceweasel

Operating System: debian

Trait:
{  "unaffected": true}

Source: debian

Type: Configuration

Product: seamonkey

Operating System: ubuntu hardy 8.04

Trait:
{  "unfixed": true}

Source: ubuntu

Type: Configuration

Product: thunderbird

Operating System: ubuntu hardy 8.04

Trait:
{  "unfixed": true}

Source: ubuntu

Type: Configuration

Vendor: *

Product: firefox

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.0.2",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:mozill...

Source: nvd

Type: Configuration

Vendor: *

Product: linux_enterprise_desktop

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*", ...

Source: nvd

Type: Configuration

Vendor: *

Product: linux_enterprise_server

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*", ...

Source: nvd

Type: Configuration

Vendor: *

Product: linux_enterprise_software_development_kit

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*", ...

Source: nvd

Type: Configuration

Vendor: *

Product: opensuse

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:opensuse:opensuse:12.1:*:*:*:*:*:*:*", ...

Source: nvd

Type: Configuration

Vendor: *

Product: seamonkey

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.0.2",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:mozill...

Source: nvd

Type: Configuration

Vendor: *

Product: thunderbird

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.0.2",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:mozill...

Source: nvd

Type: Configuration

Vendor: *

Product: thunderbird_esr

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*",      "versionEndExcluding": "17.0.2",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:a:mozill...

Source: nvd

Type: Configuration

Vendor: *

Product: ubuntu_linux

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:o:canonical:ubuntu_linux:10.04:*:*:*:-:*:*:*",      "vulnerable": true    },    {      "cpe23uri": "cpe:2.3:o:canonical:ubuntu_linux:11.10:*:*:*...

Source: nvd

End of list