7.6
CVSSv2

CVE-2010-0168

Published: 25/03/2010 Updated: 19/09/2017
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

The nsDocument::MaybePreLoadImage function in content/base/src/nsDocument.cpp in the image-preloading implementation in Mozilla Firefox 3.6 prior to 3.6.2 does not apply scheme restrictions and policy restrictions to the image's URL, which might allow remote malicious users to cause a denial of service (application crash or hang) or hijack the functionality of the browser's add-ons via a crafted SRC attribute of an IMG element, as demonstrated by remote command execution through an ssh: URL in a configuration that supports gnome-vfs with a nonstandard network.gnomevfs.supported-protocols setting.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 3.6.1

mozilla firefox 3.6

Vendor Advisories

Mozilla Foundation Security Advisory 2010-13 Content policy bypass with image preloading Announced March 23, 2010 Reporter Josh Soref, Nokia Impact Moderate Products Firefox Fixed in ...

Exploits

source: wwwsecurityfocuscom/bid/38927/info Mozilla Firefox is prone to a security-bypass vulnerability Attackers can exploit this issue to bypass content-loading policies Attackers can exploit this issue to bypass content-loading policies The impact of this issue will depend on the reasons behind the content check Consequences may i ...