4.3
CVSSv2

CVE-2006-6507

Published: 20/12/2006 Updated: 08/03/2011
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Mozilla Firefox 2.0 prior to 2.0.0.1 allows remote malicious users to bypass Cross-Site Scripting (XSS) protection via vectors related to a Function.prototype regression error.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 2.0

Vendor Advisories

Various flaws have been reported that allow an attacker to execute arbitrary code with user privileges by tricking the user into opening a malicious web page containing JavaScript or SVG (CVE-2006-6497, CVE-2006-6498, CVE-2006-6499, CVE-2006-6501, CVE-2006-6502, CVE-2006-6504) ...
Mozilla Foundation Security Advisory 2006-76 XSS using outer window's Function object Announced December 19, 2006 Reporter moz_bug_r_a4 Impact High Products Firefox Fixed in Firefo ...