CVE-2013-0770 describes multiple unspecified vulnerabilities in the browser engine of Mozilla Firefox, Thunderbird, and SeaMonkey, affecting versions prior to 18.0, 17.0.2, and 2.15 respectively. This vulnerability carries a critical CVSS score of 9.3, indicating a high risk due to its network-based attack vector and medium attack complexity, potentially leading to memory corruption, application crashes (Denial of Service), or arbitrary code execution. While the EPSS score is low and it is not listed in the KEV catalog, there is no public exploit code available (Metasploit, Nuclei, ExploitDB), and it has received minimal community discussion or media coverage, suggesting a lack of active exploitation or widespread attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 10.0.12CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* | ||
< 18.0CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* | ||
>= 17.0, < 17.0.2CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* | ||
< 2.15CPE matchmatch criteria | cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:* | ||
< 17.0.2CPE matchmatch criteria | cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.