CVE-2009-2210 PUBLISHED CVSS 9.300000190734863 CRITICAL

Mozilla Thunderbird before 2.0.0.22 and SeaMonkey before 1.1.17 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a multipart/alternative e-mail message containing a text/enhanced part that triggers access to an incorrect object type.

EPSS 5.53% · 90.2th percentile

Risk Scores

CVSS v2.0
9.300000190734863
EPSS Score
5.53%
90.2th percentile

Affected Products

VendorProductVersions
mozillathunderbird0.8, 1.5.0.13, 1.5.0.14
n/an/an/a
mozillaseamonkey1.0, 1.0, 1.0

Timeline

References

Open in Interactive Console →