KEVIntel
9.8
CVSS
Critical

CVE-2010-3765

PUBLISHED

Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before...

5697 days faster than CISA KEV

Exploited in the wild PoC available Remote Low complexity No user interaction
Vendor
Mozilla
Product
Firefox, Thunderbird, SeaMonkey
Published
Oct 27, 2010
EPSS
86.8% · 99% pctl

Automate this intelligence with the Pro API

Everything on this page — CVSS, EPSS, exploit status, PoCs, scanner integrations, mentions, tags, and immediate honeypot data — is available programmatically for VM, SOC, and CTI workflows.

Description

Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.10, when JavaScript is enabled, allows remote attackers to execute arbitrary code via vectors related to nsCSSFrameConstructor::ContentAppended, the appendChild method, incorrect index tracking, and the creation of multiple frames, which triggers memory corruption, as exploited in the wild in October 2010 by the Belmoo malware.

java cisa metasploit

Weaknesses (CWE)

  • Improper Restriction of Operations within the Bounds of a Memory Buffer

CVSS scores

CVSS v3.1 9.8 Critical

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

CVSS v2.0 9.3 High

AV:N/AC:M/Au:N/C:C/I:C/A:C

Exploitation status

Exploited in the wild

Recorded 2010-10-27 22:00:00 UTC · CVE

Proof of concept available

Recorded 2025-04-28 15:02:40 UTC

References

Known exploited vulnerability sources

Catalogues that list this CVE as a known exploited vulnerability.

Source Added
CVE First 2010-10-27 22:00 UTC
CISA 2026-06-02 14:05 UTC

Potential proof of concepts

These PoCs are unverified and could contain malware. Use at your own risk.

mozilla_interleaved_write

metasploit · Created Unknown

Metasploit module for CVE-2010-3765

Timeline

  • CVE ID Reserved

  • CVE Published to Public

  • Added to KEVIntel

  • Proof of Concept Exploit Available

  • Detected by Metasploit

  • KEV confirmed by CISA