Computer Security
[EN] securityvulns.ru no-pyccku


Mozilla Fizzle addon crossite access
Published:25.03.2007
Source:
SecurityVulns ID:7466
Type:client
Threat Level:
5/10
Affected:MOZILLA : Fizzle 0.5
CVE:CVE-2007-1678 (Cross-site scripting (XSS) vulnerability in the Fizzle 0.5 extension for Firefox allows remote attackers to inject arbitrary web script or HTML via RSS feeds, which are executed by the chrome: URI handler.)
Original documentdocumentCrYpTiC MauleR, [Full-disclosure] Fizzle : Firefox Extension Vulnerability (25.03.2007)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod