6.4
CVSSv2

CVE-2006-6585

Published: 15/12/2006 Updated: 17/10/2018
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

The Extensions manager in Mozilla Firefox 2.0 does not properly populate the list of local extensions, which allows malicious users to construct an extension that hides itself by finding its name in the list and then calling RemoveElement, as demonstrated by the FFsniFF extension. NOTE: it was later reported that 3.0 is also affected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 2.0

mozilla firefox 3.0