7.5
CVSSv2

CVE-2005-2267

Published: 13/07/2005 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Firefox prior to 1.0.5 allows remote malicious users to steal information and possibly execute arbitrary code by using standalone applications such as Flash and QuickTime to open a javascript: URL, which is run in the context of the previous page, and may lead to code execution if the standalone application loads a privileged chrome: URL.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 0.9

mozilla firefox 0.9.1

mozilla firefox 1.0.3

mozilla firefox 0.9.2

mozilla firefox 0.9.3

mozilla firefox 0.10

mozilla firefox 1.0

mozilla firefox 1.0.4

mozilla firefox 0.10.1

mozilla firefox 0.8

mozilla firefox 1.0.1

mozilla firefox 1.0.2

Vendor Advisories

Synopsis mozilla security update Type/Severity Security Advisory: Important Topic Updated mozilla packages that fix various security issues are now availableThis update has been rated as having important security impact by the RedHat Security Response Team Description Mozilla is an open s ...
Synopsis firefox security update Type/Severity Security Advisory: Important Topic An updated firefox package that fixes various security bugs is nowavailable for Red Hat Enterprise Linux 4This update has been rated as having important security impact by the RedHat Security Response Team Descripti ...
USN-149-1 fixed some vulnerabilities in the Ubuntu 504 (Hoary Hedgehog) version of Firefox The version shipped with Ubuntu 410 (Warty Warthog) is also vulnerable to these flaws, so it needs to be upgraded as well Please see ...
Secuniacom reported that one of the recent security patches in Firefox reintroduced the frame injection patch that was originally known as CAN-2004-0718 This allowed a malicious web site to spoof the contents of other web sites (CAN-2005-1937) ...