Oval Definition:oval:org.mitre.oval:def:17065
Revision Date:2014-10-06Version:23
Title:Mozilla Firefox before 20.0 and SeaMonkey before 2.17 do not prevent origin spoofing of tab-modal dialogs, which allows remote attackers to conduct phishing attacks via a crafted web site.
Description:Mozilla Firefox before 20.0 and SeaMonkey before 2.17 do not prevent origin spoofing of tab-modal dialogs, which allows remote attackers to conduct phishing attacks via a crafted web site.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2013-0794
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows 8
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Server 2012
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Mozilla Firefox
Mozilla SeaMonkey
Definition Synopsis
  • Check for vulnerable Seamonkey
  • Mozilla Seamonkey is installed
  • AND Determine if the version of Mozilla Seamonkey is less than 2.17
  • AND Determine if the version of Mozilla Seamonkey is greater than or equal to 2.0
  • Check for vulnerable Firefox
  • Mozilla Firefox Mainline release is installed
  • AND Mozilla Firefox Mainline version is greater than or equal to 19.0.1
  • AND Mozilla Firefox Mainline version is less than or equal to 19.0.2
  • BACK