CVE-2005-1158 Information

Description

Multiple \missing security checks\ in Firefox before 1.0.3 allow remote attackers to inject arbitrary Javascript into privileged pages using the _search target of the Firefox sidebar.

Reference

http://secunia.com/advisories/14938 http://www.mozilla.org/security/announce/mfsa2005-39.html http://www.redhat.com/support/errata/RHSA-2005-383.html http://www.securityfocus.com/bid/13231 https://bugzilla.mozilla.org/show_bug.cgi?id=290079 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A100019 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A11734

Share on: