4.3
CVSSv2

CVE-2008-2419

Published: 23/05/2008 Updated: 08/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Mozilla Firefox 2.0.0.14 allows remote malicious users to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code by triggering an error condition during certain Iframe operations between a JSframe write and a JSframe close, as demonstrated by an error in loading an empty Java applet defined by a 'src="javascript:"' sequence.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 2.0.0.14

Exploits

source: wwwsecurityfocuscom/bid/29318/info Mozilla Firefox is prone to a remote denial-of-service vulnerability when running certain JavaScript commands on empty applets in an iframe Successful exploits can allow attackers to crash the affected browser, resulting in denial-of-service conditions Given the nature of this issue, attackers ...