4.3
CVSSv2

CVE-2004-1156

Published: 31/12/2004 Updated: 11/10/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Mozilla prior to 1.7.6, and Firefox prior to 1.0.1, allows remote malicious users to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the "window injection" vulnerability.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 0.10.1

mozilla firefox 0.8

mozilla mozilla 0.8

mozilla mozilla 0.9.2

mozilla mozilla 0.9.6

mozilla mozilla 0.9.7

mozilla firefox 0.10

mozilla firefox 0.9

mozilla firefox 1.0

mozilla mozilla 0.9.48

mozilla mozilla 0.9.5

mozilla mozilla 1.0.2

mozilla mozilla 1.0

mozilla mozilla 1.2

mozilla mozilla 1.5

mozilla mozilla 1.5.1

mozilla mozilla 1.7

mozilla firefox 0.9.2

mozilla firefox 0.9.3

mozilla mozilla 0.9.4

mozilla mozilla 0.9.4.1

mozilla mozilla 1.0.1

mozilla mozilla 1.2.1

mozilla mozilla 1.4

mozilla mozilla 1.7.3

mozilla firefox 0.9.1

mozilla mozilla 0.9.2.1

mozilla mozilla 0.9.3

mozilla mozilla 0.9.35

mozilla mozilla 0.9.8

mozilla mozilla 0.9.9

mozilla mozilla 1.1

mozilla mozilla 1.4.1

mozilla mozilla 1.4.2

mozilla mozilla 1.7.1

mozilla mozilla 1.7.2

mozilla mozilla 1.3

mozilla mozilla 1.3.1

mozilla mozilla 1.6

Vendor Advisories

Synopsis Mozilla security update Type/Severity Security Advisory: Important Topic Updated Mozilla packages that fix various security bugs are now availableThis update has been rated as having Important security impact by the RedHat Security Response Team Description Mozilla is an open sou ...
Synopsis firefox security update Type/Severity Security Advisory: Critical Topic Updated firefox packages that fix various bugs are now availableThis update has been rated as having critical security impact by the RedHat Security Response Team Description Mozilla Firefox is an open source ...
USN-149-1 fixed some vulnerabilities in the Ubuntu 504 (Hoary Hedgehog) version of Firefox The version shipped with Ubuntu 410 (Warty Warthog) is also vulnerable to these flaws, so it needs to be upgraded as well Please see ...