oval:org.mitre.oval:def:14458
Definition Id: oval:org.mitre.oval:def:14458 | |||
Oval ID: | oval:org.mitre.oval:def:14458 | ||
Title: | The implementation of Content Security Policy (CSP) violation reports in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, and possibly other products does not remove proxy-authorization credentials from the listed request headers, which allows attackers to obtain sensitive information by reading a report, related to incorrect host resolution that occurs with certain redirects. | ||
Description: | The implementation of Content Security Policy (CSP) violation reports in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, and possibly other products does not remove proxy-authorization credentials from the listed request headers, which allows attackers to obtain sensitive information by reading a report, related to incorrect host resolution that occurs with certain redirects. | ||
Family: | windows | Class: | vulnerability |
Reference(s): | CVE-2011-2990 | Version: | 18 |
Platform(s): | Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Vista Microsoft Windows Server 2003 Microsoft Windows XP Microsoft Windows 2000 | Product(s): | Mozilla Seamonkey Mozilla Firefox |
Definition Synopsis: | |||
|
Definition Id: oval:org.mitre.oval:def:6372 | |||
Oval ID: | oval:org.mitre.oval:def:6372 | ||
Title: | Mozilla Seamonkey is installed | ||
Description: | The installed browser on the system is Mozilla Seamonkey. | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:mozilla:seamonkey | Version: | 11 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 Microsoft Windows Vista Microsoft Windows 7 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows 8 Microsoft Windows Server 2012 | Product(s): | Mozilla SeaMonkey |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:14458 oval:org.mitre.oval:def:14458 |
Definition Id: oval:org.mitre.oval:def:22259 | |||
Oval ID: | oval:org.mitre.oval:def:22259 | ||
Title: | Mozilla Firefox Mainline release is installed | ||
Description: | The browser installed on the system is Mozilla Firefox Mainline release | ||
Family: | windows | Class: | inventory |
Reference(s): | cpe:/a:mozilla:firefox | Version: | 9 |
Platform(s): | Microsoft Windows 2000 Microsoft Windows XP Microsoft Windows Server 2003 Microsoft Windows Server 2008 Microsoft Windows Server 2008 R2 Microsoft Windows Vista Microsoft Windows 7 Microsoft Windows 8 Microsoft Windows Server 2012 | Product(s): | Mozilla Firefox |
Definition Synopsis: | |||
Referenced By: | |||
oval:org.mitre.oval:def:14458 oval:org.mitre.oval:def:14458 |