Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Windows >> Mozilla Thunderbird < 1.0.7


Vulnerability Assessment Details

Mozilla Thunderbird < 1.0.7

Vulnerability Assessment Summary
Acertains the version of Thunderbird

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote version of Mozilla Thunderbird suffers from several flaws.

Description :

The remote host is using Mozilla Thunderbird, an email client.

The remote version of this software contains various security issues
which may permit a possible hacker to execute arbitrary code on the remote
host and to disguise URLs.

See also :

http://www.securityfocus.com/archive/1/407704
http://security-protocols.com/advisory/sp-x17-advisory.txt
http://www.mozilla.org/security/idn.html

Solution :

Upgrade to Thunderbird 1.0.7 when it becomes available or disable IDN
support in the browser following the instructions in the vendor's
advisory.

Network Security Threat Level:

Medium / CVSS Base Score : 6
(AV:R/AC:H/Au:NR/C:P/A:P/I:P/B:N)

Networks Security ID: 14784

Vulnerability Assessment Copyright: This script is Copyright (C) 2005-2006 Tenable Network Security

Cables, Connectors

Atari 2600 - motheboards
$19.9
Atari 2600 - motheboards  pictureAtari 800xl
$94.99
Atari 800xl   pictureAtari 800 computer in working condition Basic Computer Language console keyboard
$39.0
Atari 800 computer in working condition Basic Computer Language console keyboard pictureAtari 800 Parts: Case, Top & Bottom & LED Light Tube
$26.99
Atari 800 Parts: Case, Top & Bottom & LED Light Tube picture


Discussions

No Discussions have been posted on this vulnerability.