5
CVSSv2

CVE-2005-0150

Published: 26/05/2005 Updated: 11/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Firefox prior to 1.0 allows the user to store a (1) javascript: or (2) data: URLs as a Livefeed bookmark, then executes it in the security context of the currently loaded page when the user later accesses the bookmark, which could allow remote malicious users to execute arbitrary code.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 0.10

mozilla firefox 0.9

mozilla firefox 1.0

mozilla firefox 0.9.1

mozilla firefox 0.9.2

mozilla firefox 0.9.3

mozilla firefox 0.10.1

mozilla firefox 0.8

Vendor Advisories

USN-149-1 fixed some vulnerabilities in the Ubuntu 504 (Hoary Hedgehog) version of Firefox The version shipped with Ubuntu 410 (Warty Warthog) is also vulnerable to these flaws, so it needs to be upgraded as well Please see ...