Description Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial of service (application crash) via JavaScript code that calls document.write in an infinite loop.
CVSS vector AV:N/AC:L/C:N/I:N/A:P Exploitability: 10.0 | Impact: 2.9 Complexity: Low
Confidentiality: None
Integrity: None
Affected Packages1 packages
🔴 Vulnerability Details1 GHSA GHSA-hcmc-w4r8-h827: Mozilla Firefox 3 ↗ 2022-05-01 ▶
💥 Exploits & PoCs10 Exploit-DB BSI Advance Hotel Booking System 2.0 - 'booking_details.php Persistent Cross-Site Scripting ↗ 2019-08-12 ▶ Exploit-DB HP Data Protector A.09.00 - Arbitrary Command Execution ↗ 2016-05-26 ▶ Exploit-DB Persistent Systems Client Automation - Command Injection Remote Code Execution (Metasploit) ↗ 2015-02-27 ▶ Exploit-DB JetAudio 8.1.3 - '.mp4' Crash (PoC) ↗ 2014-12-12 ▶ Exploit-DB Thomson Reuters Fixed Assets CS 13.1.4 - Local Privilege Escalation ↗ 2014-12-02 ▶ Show 5 more
💬 Community2 Bugzilla CVE-2014-5009 CVE-2014-5008 CVE-2008-7313 nagios: snoopy: incomplete fixes for command execution flaws [epel-all] ↗ 2014-07-21 ▶ Bugzilla CVE-2014-1943 file: unrestricted recursion in handling of indirect type rules ↗ 2014-02-17 ▶