| Revision Date: | 2007-05-09 | Version: | 6 |
| Title: | Firefox Sidebar Script Injection via _search Target |
| Description: | Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL. |
| Family: | windows | Class: | vulnerability |
| Status: | ACCEPTED | Reference(s): | CVE-2005-2264
|
| Platform(s): | Microsoft Windows 2000 Microsoft Windows NT Microsoft Windows Server 2003 Microsoft Windows XP
| Product(s): | Mozilla Firefox
|
| Definition Synopsis |
| Mozilla Firefox version 1.0.4 or earlier is installed Firefox version 1.0.4 or earlier is installed
AND Mozilla Firefox version 1.0.4 or earlier is installed
|