AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2012-5354

MEDIUM · CVSS 6.8 EPSS 1.68%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-10-10 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2012-5354
Severity
MEDIUM
CVSS
6.8
EPSS
1.68%
Firefox

Original Filing — NVD Description

Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has multiple menus of SELECT elements active, which allows remote attackers to conduct clickjacking attacks via vectors involving an XPI file, the window.open method, and the Geolocation API, a different vulnerability than CVE-2012-3984.