PT-2004-1798 · Netscape+1 · Netscape+3
Jesse Ruderman
·
Published
2004-07-23
·
Updated
2017-10-11
·
CVE-2004-0718
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Mozilla versions 1.6
Firebird versions 0.7
Firefox versions 0.8
Netscape versions 7.1
Description
The issue allows a frame in one domain to inject content into a frame that belongs to another domain, which can facilitate web site spoofing and other attacks.
Recommendations
For Mozilla version 1.6, update to a version that includes a fix for this issue.
For Firebird version 0.7, update to a version that includes a fix for this issue.
For Firefox version 0.8, update to a version that includes a fix for this issue.
For Netscape version 7.1, update to a version that includes a fix for this issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Firebird
Firefox
Mozilla Firefox
Netscape