Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-0762
Description:Mozilla before 1.7, Firefox before 0.9, and Thunderbird before 0.7, allow remote web sites to install arbitrary extensions by using interactive events to manipulate the XPInstall Security dialog box.
Test IDs: 1.3.6.1.4.1.25623.1.0.52365  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-0762
BugTraq ID: 15495
http://www.securityfocus.com/bid/15495
http://marc.info/?l=bugtraq&m=109900315219363&w=2
http://archives.neohapsis.com/archives/fulldisclosure/2004-07/0264.html
http://www.squarefree.com/2004/07/01/race-conditions-in-security-dialogs/
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10032
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4403
RedHat Security Advisories: RHSA-2004:421
http://www.redhat.com/support/errata/RHSA-2004-421.html
SCO Security Bulletin: SCOSA-2005.49
ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
http://secunia.com/advisories/11999/
SuSE Security Announcement: SUSE-SA:2004:036 (Google Search)
http://www.novell.com/linux/security/advisories/2004_36_mozilla.html
XForce ISS Database: mozilla-dialog-code-execution(16623)
https://exchange.xforce.ibmcloud.com/vulnerabilities/16623




© 1998-2025 E-Soft Inc. All rights reserved.