CVE-2009-4100

Yoono extension before 6.1.1 for Firefox performs certain operations with chrome privileges, which allows user-assisted remote attackers to execute arbitrary commands and perform cross-domain scripting attacks via DOM event handlers such as onload.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 85%
VendorProductVersion
yoonoyoono
𝑥
≤ 6.1.0
yoonoyoono
2.0.2.474
yoonoyoono
2.0.3.564
yoonoyoono
2.0.4.641
yoonoyoono
2.1.0.743
yoonoyoono
2.2.1.1038
yoonoyoono
3.0.0.1268
yoonoyoono
3.0.0.1270
yoonoyoono
3.0.1.1388
yoonoyoono
3.0.2.1976
yoonoyoono
3.0.3.2369
yoonoyoono
3.0.4.2469
yoonoyoono
3.0.5.2626
yoonoyoono
3.0.6.2723
yoonoyoono
3.1.0.2898
yoonoyoono
3.1.1.2999
yoonoyoono
4.0.0.4529
yoonoyoono
4.0.1.4774
yoonoyoono
4.0.2.5149
yoonoyoono
4.0.3.5488
yoonoyoono
5.0.1.11511_11520:_11520
yoonoyoono
5.0.3
yoonoyoono
5.0.4
yoonoyoono
5.0.5
yoonoyoono
5.0.6
yoonoyoono
5.0.7
yoonoyoono
5.0.7.2
yoonoyoono
5.1.0
yoonoyoono
5.2.0
yoonoyoono
5.3.0
yoonoyoono
5.4.0
yoonoyoono
6.0.0
yoonoyoono
6.0.1
𝑥
= Vulnerable software versions