CVE Vulnerabilities

CVE-2004-1156

Published: Dec 31, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the window injection vulnerability.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla0.8 (including)0.8 (including)
FirefoxMozilla0.9 (including)0.9 (including)
FirefoxMozilla0.9-rc (including)0.9-rc (including)
FirefoxMozilla0.9.1 (including)0.9.1 (including)
FirefoxMozilla0.9.2 (including)0.9.2 (including)
FirefoxMozilla0.9.3 (including)0.9.3 (including)
FirefoxMozilla0.10 (including)0.10 (including)
FirefoxMozilla0.10.1 (including)0.10.1 (including)
FirefoxMozilla1.0 (including)1.0 (including)
MozillaMozilla0.8 (including)0.8 (including)
MozillaMozilla0.9.2 (including)0.9.2 (including)
MozillaMozilla0.9.2.1 (including)0.9.2.1 (including)
MozillaMozilla0.9.3 (including)0.9.3 (including)
MozillaMozilla0.9.4 (including)0.9.4 (including)
MozillaMozilla0.9.4.1 (including)0.9.4.1 (including)
MozillaMozilla0.9.5 (including)0.9.5 (including)
MozillaMozilla0.9.6 (including)0.9.6 (including)
MozillaMozilla0.9.7 (including)0.9.7 (including)
MozillaMozilla0.9.8 (including)0.9.8 (including)
MozillaMozilla0.9.9 (including)0.9.9 (including)
MozillaMozilla0.9.35 (including)0.9.35 (including)
MozillaMozilla0.9.48 (including)0.9.48 (including)
MozillaMozilla1.0 (including)1.0 (including)
MozillaMozilla1.0-rc1 (including)1.0-rc1 (including)
MozillaMozilla1.0-rc2 (including)1.0-rc2 (including)
MozillaMozilla1.0.1 (including)1.0.1 (including)
MozillaMozilla1.0.2 (including)1.0.2 (including)
MozillaMozilla1.1 (including)1.1 (including)
MozillaMozilla1.1-alpha (including)1.1-alpha (including)
MozillaMozilla1.1-beta (including)1.1-beta (including)
MozillaMozilla1.2 (including)1.2 (including)
MozillaMozilla1.2-alpha (including)1.2-alpha (including)
MozillaMozilla1.2-beta (including)1.2-beta (including)
MozillaMozilla1.2.1 (including)1.2.1 (including)
MozillaMozilla1.3 (including)1.3 (including)
MozillaMozilla1.3.1 (including)1.3.1 (including)
MozillaMozilla1.4 (including)1.4 (including)
MozillaMozilla1.4-alpha (including)1.4-alpha (including)
MozillaMozilla1.4-beta (including)1.4-beta (including)
MozillaMozilla1.4.1 (including)1.4.1 (including)
MozillaMozilla1.4.2 (including)1.4.2 (including)
MozillaMozilla1.5 (including)1.5 (including)
MozillaMozilla1.5.1 (including)1.5.1 (including)
MozillaMozilla1.6 (including)1.6 (including)
MozillaMozilla1.7 (including)1.7 (including)
MozillaMozilla1.7-alpha (including)1.7-alpha (including)
MozillaMozilla1.7-beta (including)1.7-beta (including)
MozillaMozilla1.7-rc1 (including)1.7-rc1 (including)
MozillaMozilla1.7-rc2 (including)1.7-rc2 (including)
MozillaMozilla1.7-rc3 (including)1.7-rc3 (including)
MozillaMozilla1.7.1 (including)1.7.1 (including)
MozillaMozilla1.7.2 (including)1.7.2 (including)
MozillaMozilla1.7.3 (including)1.7.3 (including)
Red Hat Enterprise Linux 2.1RedHatgaleon*
Red Hat Enterprise Linux 2.1RedHatmozilla*
Red Hat Enterprise Linux 3RedHatmozilla*
Red Hat Enterprise Linux 4RedHatfirefox-0:1.0.1-1.4.3*
FirefoxUbuntudapper*
FirefoxUbuntudevel*
FirefoxUbuntuedgy*
FirefoxUbuntufeisty*
Firefox-granparadisoUbuntudevel*
Lightning-sunbirdUbuntudevel*
MidbrowserUbuntudevel*
MozillaUbuntudapper*
MozillaUbuntuedgy*

References