Seamonkey
Vendor:
First CVE: Feb 2, 2006 · Active for 20 years
707
Total CVEs
More Total CVEs than 100% of tracked products
70.7
Avg CVEs / Year
Higher CVE frequency than 100% of tracked products
7.4
Avg CVSS
Higher Avg CVSS than 49% of tracked products
0.1%
KEV Rate
Higher KEV Rate than 95% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Seamonkey over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 2, 2006
20 years ago
Most Recent CVE
May 21, 2015
4,082 days ago
CVE Severity & Scoring
Seamonkey707 CVEs
41%
55%
All CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local1 (0.1%)
Network37 (5.2%)
Unknown669 (94.6%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low34 (4.8%)
High4 (0.6%)
Unknown669 (94.6%)
User Interaction
None25 (3.5%)
Unknown669 (94.6%)
Required13 (1.8%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None38 (5.4%)
Unknown669 (94.6%)
Top CVEs
Signals from CVEs in this product scope (707 CVEs).
707 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-3765CRITICAL Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.10, when JavaScript is enabled, | Oct 28, 2010 | 9.8 | 97 | YES | YES |
CVE-2014-1510CRITICAL The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to execute arbit | Mar 19, 2014 | 9.8 | 87 | NO | YES |
CVE-2011-2371HIGH Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attac | Jun 30, 2011 | 10.0 | 86 | NO | YES |
CVE-2011-0065HIGH Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors re | May 7, 2011 | 10.0 | 86 | NO | YES |
CVE-2011-0073HIGH Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly use nsTreeRange data structures, which allows remote attackers to execute arbi | May 7, 2011 | 10.0 | 85 | NO | YES |
CVE-2014-1511CRITICAL Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to bypass the popup blocker via unspecified vec | Mar 19, 2014 | 9.8 | 84 | NO | YES |
CVE-2013-2566MEDIUM The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via s | Mar 15, 2013 | 5.9 | 80 | NO | YES |
CVE-2013-0758HIGH Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17.x before 17.0.2, and SeaM | Jan 13, 2013 | 9.3 | 80 | NO | YES |
CVE-2006-3677HIGH Mozilla Firefox 1.5 before 1.5.0.5 and SeaMonkey before 1.0.3 allows remote attackers to execute arbitrary code by changing certain properties of the window navigator object (windo | Jul 27, 2006 | 7.5 | 80 | NO | YES |
CVE-2011-3658HIGH The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, which allows remote attackers to c | Dec 21, 2011 | 7.5 | 79 | NO | YES |
Exploit Exposure
Signals from CVEs in this product scope (707 CVEs).
CISA KEV
1 CVE
0.1% of CVEs· 95th percentile
Metasploit
18 CVEs
2.5% of CVEs· 96th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
40 CVEs
5.7% of CVEs· 88th percentile
Social Chatter
Signals from CVEs in this product scope (707 CVEs).
Media Mentions
Signals from CVEs in this product scope (707 CVEs).
Top CNAs Publishing CVEs For Seamonkey
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 2.9.1 | 20 | 7.1 | 6.6% | 0 | 2 |
| 2.9 | 56 | 7.5 | 5.2% | 0 | 2 |
| 2.8 | 54 | 7.4 | 4.9% | 0 | 2 |
| 2.7.2 | 60 | 7.4 | 4.8% | 0 | 2 |
| 2.7.1 | 60 | 7.4 | 4.8% | 0 | 2 |
| 2.7 | 71 | 7.3 | 4.5% | 0 | 2 |
| 2.6.1 | 70 | 7.2 | 4.5% | 0 | 2 |
| 2.6 | 70 | 7.2 | 4.5% | 0 | 2 |
| 2.5 | 72 | 7.2 | 4.6% | 0 | 3 |
| 2.4.1 | 71 | 7.2 | 4.4% | 0 | 2 |
| 2.4 | 72 | 7.2 | 4.4% | 0 | 2 |
| 2.35 | 1 | 3.7 | 99.9% | 0 | 1 |
| 2.3.3 | 77 | 7.2 | 4.3% | 0 | 2 |
| 2.3.2 | 72 | 7.1 | 4.4% | 0 | 2 |
| 2.3.1 | 72 | 7.1 | 4.4% | 0 | 2 |
| 2.3 | 72 | 7.1 | 4.4% | 0 | 2 |
| 2.26 | 1 | 7.5 | 16.2% | 0 | 0 |
| 2.25 | 2 | 8.0 | 14.1% | 0 | 0 |
| 2.24 | 1 | 7.5 | 16.2% | 0 | 0 |
| 2.23 | 1 | 7.5 | 16.2% | 0 | 0 |