TROYANOSYVIRUS
Volver a CVEs

CVE-2007-0994

N/A

Descripcion

A regression error in Mozilla Firefox 2.x before 2.0.0.2 and 1.x before 1.5.0.10, and SeaMonkey 1.1 before 1.1.1 and 1.0 before 1.0.8, allows remote attackers to execute arbitrary JavaScript as the user via an HTML mail message with a javascript: URI in an (1) img, (2) link, or (3) style tag, which bypasses the access checks and executes code with chrome privileges.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado3/6/2007
Ultima modificacion4/23/2026
Fuentenvd
Avistamientos honeypot0

Productos afectados

debian:debian_linuxmozilla:firefoxmozilla:seamonkey

Debilidades (CWE)

CWE-94

Referencias

http://secunia.com/advisories/24384(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/24395(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/24455(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/24457(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/24650(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/25588(af854a3a-2127-422b-91ae-364da2661108)
http://securitytracker.com/id?1017726(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2007/dsa-1336(af854a3a-2127-422b-91ae-364da2661108)
http://www.redhat.com/support/errata/RHSA-2007-0078.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.redhat.com/support/errata/RHSA-2007-0097.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/22826(af854a3a-2127-422b-91ae-364da2661108)
http://www.vupen.com/english/advisories/2007/0823(af854a3a-2127-422b-91ae-364da2661108)
https://issues.rpath.com/browse/RPL-1103(af854a3a-2127-422b-91ae-364da2661108)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.