CVE Vulnerabilities

CVE-2006-4570

Published: Sep 15, 2006 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Mozilla Thunderbird before 1.5.0.7 and SeaMonkey before 1.0.5, with Load Images enabled, allows remote user-assisted attackers to bypass settings that disable JavaScript via a remote XBL file in a message that is loaded when the user views, forwards, or replies to the original message.

Affected Software

Name Vendor Start Version End Version
Seamonkey Mozilla * 1.0.4 (including)
Thunderbird Mozilla * 1.5.0.6 (including)
Red Hat Enterprise Linux 3 RedHat seamonkey-0:1.0.5-0.1.el3 *
Red Hat Enterprise Linux 4 RedHat devhelp-0:0.10-0.4.el4 *
Red Hat Enterprise Linux 4 RedHat seamonkey-0:1.0.5-0.1.el4 *
Red Hat Enterprise Linux 4 RedHat thunderbird-0:1.5.0.7-0.1.el4 *
Mozilla-thunderbird Ubuntu dapper *
Mozilla-thunderbird Ubuntu edgy *
Mozilla-thunderbird Ubuntu feisty *

References