Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CAN-2004-0905
Description:Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows remote attackers to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a frame or page in another domain.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0905
BugTraq ID: 11177
http://www.securityfocus.com/bid/11177
Cert/CC Advisory: TA04-261A
http://www.us-cert.gov/cas/techalerts/TA04-261A.html
CERT/CC vulnerability note: VU#651928
http://www.kb.cert.org/vuls/id/651928
http://marc.info/?l=bugtraq&m=109900315219363&w=2
http://security.gentoo.org/glsa/glsa-200409-26.xml
HPdes Security Advisory: SSRT4826
http://marc.info/?l=bugtraq&m=109698896104418&w=2
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10378
SuSE Security Announcement: SUSE-SA:2004:036 (Google Search)
http://www.novell.com/linux/security/advisories/2004_36_mozilla.html
XForce ISS Database: mozilla-netscape-sameorigin-bypass(17374)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17374




© 1998-2025 E-Soft Inc. All rights reserved.