CVE-2010-0179
published 2010-04-05CVE-2010-0179: Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not…
PriorityP430medium5.1CVSS 2.0
AVNACHAuNCPIPAP
EPSS
3.28%
87.0th percentile
Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response.
Affected
221 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 3.5.15 | — |
| mozilla | firefox | <= 3.0.17 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.05.1MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
vendor_ubuntu10.0CRITICAL
vendor_redhat5.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)
vendor_redhat·2010-12-09·CVSS 5.1
CVE-2010-3773 [MEDIUM] Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)
Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-0179.
Package: firefox (Red Hat Enterprise Linux Extended Update Support 4.8) - Affected
Package: firefox (Red Hat Enterprise Linux Extended Update Support 5.5) - Affected
Package: firefox (Red Hat Enterprise Linux Extended Update Support 6.0) - Affected
Ubuntu
Firefox 3.0 and Xulrunner vulnerabilities
vendor_ubuntu·2010-04-09·CVSS 10.0
CVE-2010-0174 [CRITICAL] Firefox 3.0 and Xulrunner vulnerabilities
Title: Firefox 3.0 and Xulrunner vulnerabilities
Summary: Firefox 3.0 and Xulrunner vulnerabilities
Martijn Wargers, Josh Soref, Jesse Ruderman, and Ehsan Akhgari discovered
flaws in the browser engine of Firefox. If a user were tricked into viewing
a malicious website, a remote attacker could cause a denial of service or
possibly execute arbitrary code with the privileges of the user invoking
the program. (CVE-2010-0174)
It was discovered that Firefox could be made to access previously freed
memory. If a user were tricked into viewing a malicious website, a remote
attacker could cause a denial of service or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0175,
CVE-2010-0176, CVE-2010-0177)
Paul Stone discovered that Firefox could be made
Ubuntu
Firefox 3.5 and Xulrunner vulnerabilities
vendor_ubuntu·2010-04-09·CVSS 9.3
CVE-2010-0182 [CRITICAL] Firefox 3.5 and Xulrunner vulnerabilities
Title: Firefox 3.5 and Xulrunner vulnerabilities
Summary: Firefox 3.5 and Xulrunner vulnerabilities
Martijn Wargers, Josh Soref, Jesse Ruderman, and Ehsan Akhgari discovered
flaws in the browser engine of Firefox. If a user were tricked into viewing
a malicious website, a remote attacker could cause a denial of service or
possibly execute arbitrary code with the privileges of the user invoking
the program. (CVE-2010-0173, CVE-2010-0174)
It was discovered that Firefox could be made to access previously freed
memory. If a user were tricked into viewing a malicious website, a remote
attacker could cause a denial of service or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0175,
CVE-2010-0176, CVE-2010-0177)
Paul Stone discovered that Firefo
Red Hat
Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy
vendor_redhat·2010-03-30·CVSS 5.1
CVE-2010-0179 [MEDIUM] Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy
Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy
Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response.
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
VulDB
Mozilla Firefox up to 1.0.8 code injection (Bug 504021 / Nessus ID 75662)
vuldb·2026-05-05·CVSS 5.1
CVE-2010-0179 [MEDIUM] Mozilla Firefox up to 1.0.8 code injection (Bug 504021 / Nessus ID 75662)
A vulnerability identified as problematic has been detected in Mozilla Firefox. This affects an unknown part. Performing a manipulation results in code injection.
This vulnerability was named CVE-2010-0179. The attack may be initiated remotely. There is no available exploit.
You should upgrade the affected component.
GHSA
GHSA-9944-54j7-5276: Mozilla Firefox before 3
ghsa_unreviewed·2022-05-17·CVSS 5.1
CVE-2010-3773 [MEDIUM] GHSA-9944-54j7-5276: Mozilla Firefox before 3
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-0179.
GHSA
GHSA-hp7g-4p49-x89c: Mozilla Firefox before 3
ghsa_unreviewed·2022-05-02
CVE-2010-0179 [MEDIUM] CWE-94 GHSA-hp7g-4p49-x89c: Mozilla Firefox before 3
Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, when the XMLHttpRequestSpy module in the Firebug add-on is used, does not properly handle interaction between the XMLHttpRequestSpy object and chrome privileged objects, which allows remote attackers to execute arbitrary JavaScript via a crafted HTTP response.
Suricata
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid INSERT
suricata·2010-07-30·CVSS 7.5
CVE-2007-0179 [HIGH] ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid INSERT
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid INSERT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid INSERT"; flow:established,to_server; http.uri; content:"/comment.php?"; nocase; content:"subid="; nocase; content:"INSERT"; nocase; content:"INTO"; nocase; distance:0; reference:cve,CVE-2007-0179; reference:url,www.securityfocus.com/bid/21962; classtype:web-application-attack; sid:2005786; rev:8; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_08, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T11
Suricata
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UNION SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2007-0179 [HIGH] ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UNION SELECT
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UNION SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UNION SELECT"; flow:established,to_server; http.uri; content:"/comment.php?"; nocase; content:"subid="; nocase; content:"UNION"; nocase; content:"SELECT"; nocase; distance:0; pcre:"/UNION\s+SELECT/i"; reference:cve,CVE-2007-0179; reference:url,www.securityfocus.com/bid/21962; classtype:web-application-attack; sid:2005785; rev:8; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_08, mitre_tactic_id TA0001, mitre_tactic_name
Suricata
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UPDATE
suricata·2010-07-30·CVSS 7.5
CVE-2007-0179 [HIGH] ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UPDATE
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UPDATE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid UPDATE"; flow:established,to_server; http.uri; content:"/comment.php?"; nocase; content:"subid="; nocase; content:"UPDATE"; nocase; content:"SET"; nocase; distance:0; reference:cve,CVE-2007-0179; reference:url,www.securityfocus.com/bid/21962; classtype:web-application-attack; sid:2005789; rev:8; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_08, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T119
Suricata
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid DELETE
suricata·2010-07-30·CVSS 7.5
CVE-2007-0179 [HIGH] ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid DELETE
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid DELETE
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid DELETE"; flow:established,to_server; http.uri; content:"/comment.php?"; nocase; content:"subid="; nocase; content:"DELETE"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2007-0179; reference:url,www.securityfocus.com/bid/21962; classtype:web-application-attack; sid:2005787; rev:8; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_08, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T11
Suricata
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid ASCII
suricata·2010-07-30·CVSS 7.5
CVE-2007-0179 [HIGH] ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid ASCII
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid ASCII
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid ASCII"; flow:established,to_server; http.uri; content:"/comment.php?"; nocase; content:"subid="; nocase; content:"ASCII("; nocase; content:"SELECT"; nocase; distance:0; reference:cve,CVE-2007-0179; reference:url,www.securityfocus.com/bid/21962; classtype:web-application-attack; sid:2005788; rev:8; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_08, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T11
Suricata
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid SELECT
suricata·2010-07-30·CVSS 7.5
CVE-2007-0179 [HIGH] ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid SELECT
ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid SELECT
Rule: alert http $EXTERNAL_NET any -> $HTTP_SERVERS any (msg:"ET WEB_SPECIFIC_APPS PHPKIT SQL Injection Attempt -- comment.php subid SELECT"; flow:established,to_server; http.uri; content:"/comment.php?"; nocase; content:"subid="; nocase; content:"SELECT"; nocase; content:"FROM"; nocase; distance:0; reference:cve,CVE-2007-0179; reference:url,www.securityfocus.com/bid/21962; classtype:web-application-attack; sid:2005784; rev:8; metadata:affected_product Web_Server_Applications, attack_target Web_Server, created_at 2010_07_30, deployment Datacenter, confidence Medium, signature_severity Major, tag SQL_Injection, updated_at 2020_09_08, mitre_tactic_id TA0001, mitre_tactic_name Initial_Access, mitre_technique_id T11
No public exploits indexed.
Bugzilla
CVE-2010-3773 Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)
bugzilla·2010-12-06·CVSS 5.1
CVE-2010-3773 [MEDIUM] CVE-2010-3773 Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)
CVE-2010-3773 Mozilla incomplete fix for CVE-2010-0179 (MFSA 2010-82)
Mozilla security researcher moz_bug_r_a4 reported that the fix for
CVE-2010-0179 could be circumvented permitting the execution of arbitrary
JavaScript with chrome privileges.
Discussion:
This is now public:
http://www.mozilla.org/security/announce/2010/mfsa2010-82.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 4
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 6
Via RHSA-2010:0966 https://rhn.redhat.com/errata/RHSA-2010-0966.html
Bugzilla
CVE-2010-0179 Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy
bugzilla·2010-03-30·CVSS 5.1
CVE-2010-0179 [MEDIUM] CVE-2010-0179 Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy
CVE-2010-0179 Firefox Arbitrary code execution with Firebug XMLHttpRequestSpy
Mozilla security researcher moz_bug_r_a4 reported that the
XMLHttpRequestSpy module in the Firebug add-on was exposing an underlying
chrome privilege escalation vulnerability. When the XMLHttpRequestSpy
object was created, it would attach various properties of itself to objects
defined in web content which were not being properly wrapped to prevent
their exposure to chrome privileged objects. This could result in an
attacker running arbitrary JavaScript on a victim's machine, though it
required the victim to have Firebug installed.
Discussion:
This is now public
http://www.mozilla.org/security/announce/2010/mfsa2010-21.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00002.htmlhttp://secunia.com/advisories/3924http://secunia.com/advisories/39243http://secunia.com/advisories/39308http://secunia.com/advisories/39397http://secunia.com/advisories/42818http://securitytracker.com/id?1023783http://support.avaya.com/css/P8/documents/100124650http://ubuntu.com/usn/usn-921-1http://www.debian.org/security/2010/dsa-2027http://www.mandriva.com/security/advisories?name=MDVSA-2010:070http://www.mandriva.com/security/advisories?name=MDVSA-2010:251http://www.mozilla.org/security/announce/2010/mfsa2010-21.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0332.htmlhttp://www.securityfocus.com/bid/39124http://www.vupen.com/english/advisories/2010/0748http://www.vupen.com/english/advisories/2010/0764http://www.vupen.com/english/advisories/2010/0781http://www.vupen.com/english/advisories/2010/0849http://www.vupen.com/english/advisories/2011/0030https://bugzilla.mozilla.org/show_bug.cgi?id=504021https://exchange.xforce.ibmcloud.com/vulnerabilities/57394https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6971https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9446http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://lists.opensuse.org/opensuse-security-announce/2011-01/msg00002.htmlhttp://secunia.com/advisories/3924http://secunia.com/advisories/39243http://secunia.com/advisories/39308http://secunia.com/advisories/39397http://secunia.com/advisories/42818http://securitytracker.com/id?1023783http://support.avaya.com/css/P8/documents/100124650http://ubuntu.com/usn/usn-921-1http://www.debian.org/security/2010/dsa-2027http://www.mandriva.com/security/advisories?name=MDVSA-2010:070http://www.mandriva.com/security/advisories?name=MDVSA-2010:251http://www.mozilla.org/security/announce/2010/mfsa2010-21.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0332.htmlhttp://www.securityfocus.com/bid/39124http://www.vupen.com/english/advisories/2010/0748http://www.vupen.com/english/advisories/2010/0764http://www.vupen.com/english/advisories/2010/0781http://www.vupen.com/english/advisories/2010/0849http://www.vupen.com/english/advisories/2011/0030https://bugzilla.mozilla.org/show_bug.cgi?id=504021https://exchange.xforce.ibmcloud.com/vulnerabilities/57394https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6971https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9446
2010-04-05
Published