Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2009-1311

Опубликовано: 21 апр. 2009
Источник: redhat
CVSS2: 4.3

Описание

Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-assisted remote attackers to obtain sensitive information via a web page with an embedded frame, which causes POST data from an outer page to be sent to the inner frame's URL during a SAVEMODE_FILEONLY save of the inner frame.

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=496271Firefox POST data sent to wrong site when saving web page with embedded frame

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
почти 17 лет назад

Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-assisted remote attackers to obtain sensitive information via a web page with an embedded frame, which causes POST data from an outer page to be sent to the inner frame's URL during a SAVEMODE_FILEONLY save of the inner frame.

nvd
почти 17 лет назад

Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-assisted remote attackers to obtain sensitive information via a web page with an embedded frame, which causes POST data from an outer page to be sent to the inner frame's URL during a SAVEMODE_FILEONLY save of the inner frame.

debian
почти 17 лет назад

Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-as ...

github
почти 4 года назад

Mozilla Firefox before 3.0.9 and SeaMonkey before 1.1.17 allow user-assisted remote attackers to obtain sensitive information via a web page with an embedded frame, which causes POST data from an outer page to be sent to the inner frame's URL during a SAVEMODE_FILEONLY save of the inner frame.

oracle-oval
почти 17 лет назад

ELSA-2009-0436: firefox security update (CRITICAL)

4.3 Medium

CVSS2