Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-2266
Description:Firefox before 1.0.5 and Mozilla before 1.7.9 allows a child frame to call top.focus and other methods in a parent frame, even when the parent is in a different domain, which violates the same origin policy and allows remote attackers to steal sensitive information such as cookies and passwords from web sites whose child frames do not verify that they are in the same domain as their parents.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-2266
14242
http://www.securityfocus.com/bid/14242
15549
http://secunia.com/advisories/15549
15551
http://secunia.com/advisories/15551
15553
http://secunia.com/advisories/15553
19823
http://secunia.com/advisories/19823
ADV-2005-1075
http://www.vupen.com/english/advisories/2005/1075
DSA-810
http://www.debian.org/security/2005/dsa-810
FLSA:160202
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=160202
RHSA-2005:586
http://www.redhat.com/support/errata/RHSA-2005-586.html
RHSA-2005:587
http://www.redhat.com/support/errata/RHSA-2005-587.html
RHSA-2005:601
http://www.redhat.com/support/errata/RHSA-2005-601.html
SUSE-SA:2005:045
http://www.novell.com/linux/security/advisories/2005_45_mozilla.html
SUSE-SA:2006:022
http://www.novell.com/linux/security/advisories/2006_04_25.html
SUSE-SR:2005:018
http://www.novell.com/linux/security/advisories/2005_18_sr.html
http://www.mozilla.org/security/announce/mfsa2005-52.html
http://www.mozilla.org/security/announce/mfsa2005-52.html
mozilla-frame-topfocus-xss(21332)
https://exchange.xforce.ibmcloud.com/vulnerabilities/21332
oval:org.mitre.oval:def:100107
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A100107
oval:org.mitre.oval:def:10712
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10712
oval:org.mitre.oval:def:1415
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1415
oval:org.mitre.oval:def:773
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A773




© 1998-2025 E-Soft Inc. All rights reserved.