PoC Index

CVE-2010-1199

HIGH 9.3EPSS 11.4%

Integer overflow in the XSLT node sorting implementation in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a large text value for a node.

CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
11.42% chance of exploitation in the next 30 days, 96th percentile
Published
2010-06-23
Updated
2024-08-07

Proof-of-concept exploits (1)

ExploitDB entries (2)

References

Related