Mozilla Firefox before the Preview Release, Mozilla prior to 1.7.3, and Thunderbird prior to 0.8 allows remote malicious users to perform cross-domain scripting and possibly execute arbitrary code by convincing a user to drag and drop javascript: links to a frame or page in another domain.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mozilla firefox 0.9 |
||
mozilla firefox 0.9.1 |
||
mozilla mozilla 1.0 |
||
mozilla mozilla 1.1 |
||
mozilla mozilla 1.3 |
||
mozilla mozilla 1.3.1 |
||
mozilla mozilla 1.6 |
||
mozilla mozilla 1.7 |
||
conectiva linux 10.0 |
||
conectiva linux 9.0 |
||
mozilla firefox 0.8 |
||
mozilla mozilla 1.0.2 |
||
mozilla mozilla 1.2 |
||
mozilla mozilla 1.4 |
||
mozilla mozilla 1.5 |
||
netscape navigator 7.1 |
||
netscape navigator 7.2 |
||
mozilla firefox 0.9.2 |
||
mozilla firefox 0.9.3 |
||
mozilla mozilla 1.4.1 |
||
mozilla mozilla 1.7.1 |
||
mozilla mozilla 1.7.2 |
||
mozilla mozilla 1.0.1 |
||
mozilla mozilla 1.2.1 |
||
mozilla mozilla 1.4.2 |
||
netscape navigator 7.0 |
||
netscape navigator 7.0.2 |
||
redhat enterprise linux 2.1 |
||
redhat enterprise linux 3.0 |
||
redhat linux 7.3 |
||
redhat linux 9.0 |
||
suse suse linux 9.0 |
||
suse suse linux 8 |
||
redhat linux advanced workstation 2.1 |
||
suse suse linux 1.0 |
||
suse suse linux 9.1 |
||
redhat enterprise linux desktop 3.0 |
||
redhat fedora core core_1.0 |
||
suse suse linux 8.1 |
||
suse suse linux 8.2 |