Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-0588

Опубликовано: 02 мая 2005
Источник: ubuntu
Приоритет: medium
CVSS2: 5

Описание

Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.

РелизСтатусПримечание
dapper

released

1.7.12-1.1ubuntu2
devel

DNE

edgy

released

1.7.12-1.1ubuntu2
feisty

DNE

upstream

needs-triage

Показывать по

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 21 год назад

Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.

nvd
почти 21 год назад

Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.

debian
почти 21 год назад

Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:in ...

github
почти 4 года назад

Firefox before 1.0.1 and Mozilla before 1.7.6 does not restrict xsl:include and xsl:import tags in XSLT stylesheets to the current domain, which allows remote attackers to determine the existence of files on the local system.

5 Medium

CVSS2