Oval Definition:oval:org.mitre.oval:def:100009
Revision Date:2007-05-09Version:6
Title:Firefox Sidebar Script Injection via _search Target
Description:Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2005-2264
Platform(s):Microsoft Windows 2000
Microsoft Windows NT
Microsoft Windows Server 2003
Microsoft Windows XP
Product(s):Mozilla Firefox
Definition Synopsis
  • Mozilla Firefox version 1.0.4 or earlier is installed
  • Firefox version 1.0.4 or earlier is installed
  • AND Mozilla Firefox version 1.0.4 or earlier is installed
  • BACK