4.6
CVSSv2

CVE-2004-0905

Published: 14/09/2004 Updated: 11/10/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Mozilla Firefox before the Preview Release, Mozilla prior to 1.7.3, and Thunderbird prior to 0.8 allows remote malicious users to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a frame or page in another domain.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 0.9

mozilla firefox 0.9.1

mozilla mozilla 1.0

mozilla mozilla 1.1

mozilla mozilla 1.3

mozilla mozilla 1.3.1

mozilla mozilla 1.6

mozilla mozilla 1.7

conectiva linux 10.0

conectiva linux 9.0

mozilla firefox 0.8

mozilla mozilla 1.0.2

mozilla mozilla 1.2

mozilla mozilla 1.4

mozilla mozilla 1.5

netscape navigator 7.1

netscape navigator 7.2

mozilla firefox 0.9.2

mozilla firefox 0.9.3

mozilla mozilla 1.4.1

mozilla mozilla 1.7.1

mozilla mozilla 1.7.2

mozilla mozilla 1.0.1

mozilla mozilla 1.2.1

mozilla mozilla 1.4.2

netscape navigator 7.0

netscape navigator 7.0.2

redhat enterprise linux 2.1

redhat enterprise linux 3.0

redhat linux 7.3

redhat linux 9.0

suse suse linux 9.0

suse suse linux 8

redhat linux advanced workstation 2.1

suse suse linux 1.0

suse suse linux 9.1

redhat enterprise linux desktop 3.0

redhat fedora core core_1.0

suse suse linux 8.1

suse suse linux 8.2

Vendor Advisories

Synopsis mozilla security update Type/Severity Security Advisory: Critical Topic Updated mozilla packages that fix a number of security issues are nowavailable Description Mozilla is an open source Web browser, advanced email and newsgroupclient, IRC chat client, and HTML editorJesse Rude ...