Mozilla Firefox prior to 7.0 and SeaMonkey prior to 2.4 do not properly restrict availability of motion data events, which makes it easier for remote malicious users to read keystrokes by leveraging JavaScript code running in a background tab.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mozilla firefox |
||
mozilla seamonkey |