CVE-2006-1728

16 documents8 sources
Severity
9.3CRITICAL
EPSS
29.8%
top 3.36%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 14
Latest updateMay 3

Description

Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via unknown vectors related to the crypto.generateCRMFRequest method.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages5 packages

NVDmozilla/firefox1.01.0.8+1
NVDmozilla/seamonkey< 1.0.1
NVDmozilla/thunderbird1.01.0.8+1
NVDmozilla/mozilla_suite< 1.7.13
Debianthunderbird< 1.5.0.2-1+3

Also affects: Ubuntu Linux 4.10, 5.04, 5.10

🔴Vulnerability Details

3
GHSA
GHSA-27mx-p3cq-xm25: Unspecified vulnerability in Mozilla Firefox and Thunderbird 12022-05-03
OSV
CVE-2006-1728: Unspecified vulnerability in Mozilla Firefox and Thunderbird 12006-04-14
CVEList
CVE-2006-1728: Unspecified vulnerability in Mozilla Firefox and Thunderbird 12006-04-14

📋Vendor Advisories

5
Ubuntu
Thunderbird vulnerabilities2006-05-03
Ubuntu
Mozilla vulnerabilities2006-04-28
Ubuntu
Firefox vulnerabilities2006-04-20
Red Hat
security flaw2006-04-14
Debian
CVE-2006-1728: firefox - Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 ...2006

💬Community

7
Bugzilla
CVE-2006-1728 security flaw2018-08-16
Bugzilla
CVE-2006-1728 Privilege escalation using crypto.generateCRMFRequest2006-04-13
Bugzilla
CVE-2006-1728 Privilege escalation using crypto.generateCRMFRequest2006-04-13
Bugzilla
CVE-2006-1728 Privilege escalation using crypto.generateCRMFRequest2006-04-13
Bugzilla
CVE-2006-1728 Privilege escalation using crypto.generateCRMFRequest2006-04-13
CVE-2006-1728 (CRITICAL CVSS 9.3) | Unspecified vulnerability in Mozill | cvebase.io