PT-2004-1798 · Netscape+1 · Netscape+3

Jesse Ruderman

·

Published

2004-07-23

·

Updated

2017-10-11

·

CVE-2004-0718

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mozilla versions 1.6 Firebird versions 0.7 Firefox versions 0.8 Netscape versions 7.1
Description The issue allows a frame in one domain to inject content into a frame that belongs to another domain, which can facilitate web site spoofing and other attacks.
Recommendations For Mozilla version 1.6, update to a version that includes a fix for this issue. For Firebird version 0.7, update to a version that includes a fix for this issue. For Firefox version 0.8, update to a version that includes a fix for this issue. For Netscape version 7.1, update to a version that includes a fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0718
DSA-775-1
DSA-777-1
DSA-810-1
DTSA-14-1
DTSA-7-1
DTSA-8-2

Affected Products

Firebird
Firefox
Mozilla Firefox
Netscape