Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-1116

Опубликовано: 26 фев. 2007
Источник: nvd
CVSS2: 5
EPSS Низкий

Описание

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

Комментарий

Comments in the hyperlinks also pointed to Firefox 2.0.0.2 containing the vulnerability.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mozilla:firefox:1.8:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00551
Низкий

5 Medium

CVSS2

Дефекты

CWE-200

Связанные уязвимости

ubuntu
больше 18 лет назад

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

debian
больше 18 лет назад

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI ...

github
около 3 лет назад

The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.

EPSS

Процентиль: 67%
0.00551
Низкий

5 Medium

CVSS2

Дефекты

CWE-200