Sploitus

CVE-2012-0460

No indexed exploits for CVE-2012-0460 yet

Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 do not properly restrict write access to the window.fullScreen object, which allows remote attackers to spoof the user interface via a crafted web page.

Mozilla Firefox
= 4.0, 4.0.1, 5.0, 5.0.1, 6.0, 6.0.1, 6.0.2, 7.0, 7.0.1, 8.0, 8.0.1, 9.0, 9.0.1
Fix
Available
CVSS 2.0
6.4 MEDIUM
EPSS
2.0% (79th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2012-03-14
CVE-2012-0460 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2012-0460 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2012-0460 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.