CVE-2012-3984: Medium severity firefox vulnerability
Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has a SELECT element's menu active, which allows remote attackers to spoof page content via vectors involving absolute positioning and scrolling.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3984?
CVE-2012-3984 has been rated as a high severity vulnerability due to its potential to allow content spoofing.
How do I fix CVE-2012-3984?
To fix CVE-2012-3984, upgrade to Mozilla Firefox 16.0, Thunderbird 16.0, or SeaMonkey 2.13 or newer versions.
What is the impact of CVE-2012-3984?
The impact of CVE-2012-3984 is that attackers can manipulate the displayed content of a webpage, leading to phishing attacks or misinformation.
Which software versions are affected by CVE-2012-3984?
CVE-2012-3984 affects Mozilla Firefox versions before 16.0, Thunderbird versions before 16.0, and SeaMonkey versions before 2.13.
Can CVE-2012-3984 be exploited remotely?
Yes, CVE-2012-3984 can be exploited remotely by attackers through crafted web pages.