Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1116

Опубликовано: 26 фев. 2007
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

Комментарий

Comments in the hyperlinks also pointed to Firefox 2.0.0.2 containing the vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:1.8:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.0055
Низкий

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

ubuntu
почти 19 лет назад

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

debian
почти 19 лет назад

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI ...

github
почти 4 года назад

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

EPSS

Процентиль: 67%
0.0055
Низкий

5 Medium

CVSS2

Дефекты

CWE-200