Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Doron Rosenberg

Pesquisador deIBM
#18184de 53,779
15CVSS total
Vulnerabilidades · 2
Alta
2
PT-2005-1786
7.5
2005-04-18
Mozilla · Firefox · CVE-2005-0752
**Name of the Vulnerable Software and Affected Versions** Firefox versions prior to 1.0.3 **Description** The issue allows remote attackers to execute arbitrary code via a javascript: URL in the PLUGINSPAGE attribute of an EMBED tag. This is related to the Plugin Finder Service (PFS) in Firefox. **Recommendations** For versions prior to 1.0.3, update to version 1.0.3 or later to resolve the issue. As a temporary workaround, consider disabling the execution of javascript: URLs in the PLUGINSPAGE attribute of an EMBED tag until a patch is applied.
PT-2005-2169
7.5
2005-04-18
Mozilla · Firefox · CVE-2005-1153
**Name of the Vulnerable Software and Affected Versions** Firefox versions prior to 1.0.3 Mozilla Suite versions prior to 1.7.7 **Description** The issue allows remote attackers to execute arbitrary code via a javascript: URL that is executed when the user selects the "Show javascript" option, after blocking a popup. **Recommendations** For Firefox versions prior to 1.0.3, update to version 1.0.3 or later to resolve the issue. For Mozilla Suite versions prior to 1.7.7, update to version 1.7.7 or later to resolve the issue.