Vulnerability Name: | CVE-2007-1256 (CCN-33517) | ||||||||
Assigned: | 2007-02-27 | ||||||||
Published: | 2007-02-27 | ||||||||
Updated: | 2018-10-16 | ||||||||
Summary: | Mozilla Firefox 2.0.0.2 allows remote attackers to spoof the address bar, favicons, and document source, and perform updates in the context of arbitrary websites, by repeatedly setting document.location in the onunload attribute when linking to another website, a variant of CVE-2007-1092. | ||||||||
CVSS v3 Severity: | 5.6 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 6.8 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P) 5.5 Medium (Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:U/RC:UR)
4.1 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:U/RC:UR)
| ||||||||
Vulnerability Type: | CWE-119 | ||||||||
Vulnerability Consequences: | Bypass Security | ||||||||
References: | Source: CCN Type: Full-Disclosure Mailing List, Tue Feb 27 2007 - 07:29:11 CST Re: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) Source: CCN Type: Full-Disclosure Mailing List, Tue Feb 27 2007 - 10:05:16 CST Re: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) Source: MITRE Type: CNA CVE-2007-1256 Source: FULLDISC Type: Third Party Advisory 20070227 Re: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) Source: FULLDISC Type: Third Party Advisory 20070227 RE: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) Source: OSVDB Type: Broken Link 35913 Source: CCN Type: Mozilla Firefox Web site Mozilla - Home of the Firefox web browser and Thunderbird email client Source: CCN Type: OSVDB ID: 35913 Mozilla Firefox onunload Attribute document.location Spoofing Source: BUGTRAQ Type: UNKNOWN 20070227 Re: [Full-disclosure] Firefox onUnload + document.write() memory corruption vulnerability (MSIE7 null ptr) Source: XF Type: UNKNOWN firefox-documentlocation-interface-spoofing(33517) | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
BACK |