Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2013-1737

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly identify the "this" object during use of user-defined getter methods on DOM proxies, which might allow remote attackers to bypass intended access restrictions via vectors involving an expando object.

  • Published: Sep 18, 2013
  • Updated: Apr 13, 2023
  • CVE: CVE-2013-1737
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
mozilla / thunderbird_esr 17.0.8 17.0.8.x
mozilla / thunderbird_esr 17.0.1 17.0.1.x
mozilla / thunderbird_esr 17.0.2 17.0.2.x
mozilla / thunderbird_esr 17.0.3 17.0.3.x
mozilla / thunderbird_esr 17.0.7 17.0.7.x
mozilla / thunderbird_esr 17.0.5 17.0.5.x
mozilla / thunderbird_esr 17.0.6 17.0.6.x
mozilla / thunderbird_esr 17.0.4 17.0.4.x
mozilla / thunderbird_esr 17.0 17.0.x
mozilla / seamonkey 2.0.10 2.0.10.x
mozilla / seamonkey 2.13.1 2.13.1.x
mozilla / seamonkey 2.15-beta2 2.15-beta2.x
mozilla / seamonkey 2.20-beta2 2.20-beta2.x
mozilla / seamonkey 2.0.13 2.0.13.x
mozilla / seamonkey 2.12.1 2.12.1.x
mozilla / seamonkey 2.13.2 2.13.2.x
mozilla / seamonkey 2.14-beta2 2.14-beta2.x
mozilla / seamonkey 2.12-beta5 2.12-beta5.x
mozilla / seamonkey 2.0.4 2.0.4.x
mozilla / seamonkey 2.10-beta1 2.10-beta1.x
mozilla / seamonkey 2.1-alpha2 2.1-alpha2.x
mozilla / seamonkey 2.11-beta1 2.11-beta1.x
mozilla / seamonkey 2.0.3 2.0.3.x
mozilla / seamonkey 2.0.2 2.0.2.x
mozilla / seamonkey 2.16-beta4 2.16-beta4.x
mozilla / seamonkey 2.13 2.13.x
mozilla / seamonkey 2.16.1 2.16.1.x
mozilla / seamonkey 2.0-alpha_2 2.0-alpha_2.x
mozilla / seamonkey 2.0.8 2.0.8.x
mozilla / seamonkey 2.19-beta2 2.19-beta2.x
mozilla / seamonkey 2.0-rc2 2.0-rc2.x
mozilla / seamonkey 2.0-alpha_3 2.0-alpha_3.x
mozilla / seamonkey 2.12 2.12.x
mozilla / seamonkey 2.11-beta2 2.11-beta2.x
mozilla / seamonkey 2.17-beta2 2.17-beta2.x
mozilla / seamonkey 2.10-beta3 2.10-beta3.x
mozilla / seamonkey 2.11-beta4 2.11-beta4.x
mozilla / seamonkey 2.18-beta1 2.18-beta1.x
mozilla / seamonkey 2.0.12 2.0.12.x
mozilla / seamonkey 2.19-beta1 2.19-beta1.x
mozilla / seamonkey 2.13-beta1 2.13-beta1.x
mozilla / seamonkey 2.12-beta4 2.12-beta4.x
mozilla / seamonkey 2.16.2 2.16.2.x
mozilla / seamonkey 2.18-beta4 2.18-beta4.x
mozilla / seamonkey 2.0.11 2.0.11.x
mozilla / seamonkey 2.13-beta5 2.13-beta5.x
mozilla / seamonkey 2.16-beta1 2.16-beta1.x
mozilla / seamonkey 2.11 2.11.x
mozilla / seamonkey 2.0-beta_2 2.0-beta_2.x
mozilla / seamonkey 2.1-rc1 2.1-rc1.x
mozilla / seamonkey 2.17-beta1 2.17-beta1.x
mozilla / seamonkey 2.15-beta4 2.15-beta4.x
mozilla / seamonkey 2.15 2.15.x
mozilla / seamonkey 2.16-beta5 2.16-beta5.x
mozilla / seamonkey 2.17.1 2.17.1.x
mozilla / seamonkey 2.1 2.1.x
mozilla / seamonkey 2.0-alpha_1 2.0-alpha_1.x
mozilla / seamonkey 2.0.9 2.0.9.x
mozilla / seamonkey 2.1-alpha1 2.1-alpha1.x
mozilla / seamonkey 2.13-beta4 2.13-beta4.x
mozilla / seamonkey 2.15-beta5 2.15-beta5.x
mozilla / seamonkey 2.1-beta2 2.1-beta2.x
mozilla / seamonkey 2.0.1 2.0.1.x
mozilla / seamonkey 2.10.1 2.10.1.x
mozilla / seamonkey 2.16 2.16.x
mozilla / seamonkey 2.13-beta3 2.13-beta3.x
mozilla / seamonkey 2.13-beta6 2.13-beta6.x
mozilla / seamonkey 2.18-beta3 2.18-beta3.x
mozilla / seamonkey 2.14-beta4 2.14-beta4.x
mozilla / seamonkey 2.0.14 2.0.14.x
mozilla / seamonkey 2.14 2.14.x
mozilla / seamonkey - 2.20.x
mozilla / seamonkey 2.14-beta5 2.14-beta5.x
mozilla / seamonkey 2.11-beta6 2.11-beta6.x
mozilla / seamonkey 2.0.7 2.0.7.x
mozilla / seamonkey 2.14-beta1 2.14-beta1.x
mozilla / seamonkey 2.12-beta2 2.12-beta2.x
mozilla / seamonkey 2.15.1 2.15.1.x
mozilla / seamonkey 2.17-beta3 2.17-beta3.x
mozilla / seamonkey 2.15-beta6 2.15-beta6.x
mozilla / seamonkey 2.12-beta3 2.12-beta3.x
mozilla / seamonkey 2.14-beta3 2.14-beta3.x
mozilla / seamonkey 2.15-beta3 2.15-beta3.x
mozilla / seamonkey 2.0-beta_1 2.0-beta_1.x
mozilla / seamonkey 2.11-beta3 2.11-beta3.x
mozilla / seamonkey 2.18-beta2 2.18-beta2.x
mozilla / seamonkey 2.1-rc2 2.1-rc2.x
mozilla / seamonkey 2.10 2.10.x
mozilla / seamonkey 2.15.2 2.15.2.x
mozilla / seamonkey 2.19 2.19.x
mozilla / seamonkey 2.12-beta6 2.12-beta6.x
mozilla / seamonkey 2.20-beta3 2.20-beta3.x
mozilla / seamonkey 2.1-beta1 2.1-beta1.x
mozilla / seamonkey 2.0.5 2.0.5.x
mozilla / seamonkey 2.15-beta1 2.15-beta1.x
mozilla / seamonkey 2.1-beta3 2.1-beta3.x
mozilla / seamonkey 2.0-rc1 2.0-rc1.x
mozilla / seamonkey 2.11-beta5 2.11-beta5.x
mozilla / seamonkey 2.16-beta2 2.16-beta2.x
mozilla / seamonkey 2.17 2.17.x
mozilla / seamonkey 2.16-beta3 2.16-beta3.x
mozilla / seamonkey 2.12-beta1 2.12-beta1.x
mozilla / seamonkey 2.20-beta1 2.20-beta1.x
mozilla / seamonkey 2.13-beta2 2.13-beta2.x
mozilla / seamonkey 2.0.6 2.0.6.x
mozilla / seamonkey 2.1-alpha3 2.1-alpha3.x
mozilla / seamonkey 2.17-beta4 2.17-beta4.x
mozilla / seamonkey 2.10-beta2 2.10-beta2.x
mozilla / seamonkey 2.0 2.0.x
mozilla / firefox_esr 17.0.5 17.0.5.x
mozilla / firefox_esr 17.0.8 17.0.8.x
mozilla / firefox_esr 17.0 17.0.x
mozilla / firefox_esr 17.0.1 17.0.1.x
mozilla / firefox_esr 17.0.6 17.0.6.x
mozilla / firefox_esr 17.0.4 17.0.4.x
mozilla / firefox_esr 17.0.3 17.0.3.x
mozilla / firefox_esr 17.0.7 17.0.7.x
mozilla / firefox_esr 17.0.2 17.0.2.x
mozilla / thunderbird 17.0.7 17.0.7.x
mozilla / thunderbird - 17.0.9.x
mozilla / thunderbird 17.0.3 17.0.3.x
mozilla / thunderbird 17.0.1 17.0.1.x
mozilla / thunderbird 17.0.4 17.0.4.x
mozilla / thunderbird 17.0 17.0.x
mozilla / thunderbird 17.0.2 17.0.2.x
mozilla / thunderbird 17.0.8 17.0.8.x
mozilla / thunderbird 17.0.6 17.0.6.x
mozilla / thunderbird 17.0.5 17.0.5.x
mozilla / firefox 19.0 19.0.x
mozilla / firefox 19.0.2 19.0.2.x
mozilla / firefox 20.0.1 20.0.1.x
mozilla / firefox 19.0.1 19.0.1.x
mozilla / firefox 21.0 21.0.x
mozilla / firefox - 23.0.1.x
mozilla / firefox 20.0 20.0.x
mozilla / firefox 22.0 22.0.x
mozilla / firefox 23.0 23.0.x