CVE Vulnerabilities

CVE-2004-1156

Published: Dec 31, 2004 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Mozilla before 1.7.6, and Firefox before 1.0.1, allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using a pop-up window on a trusted web site, aka the window injection vulnerability.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla 0.8 (including) 0.8 (including)
Firefox Mozilla 0.9 (including) 0.9 (including)
Firefox Mozilla 0.9-rc (including) 0.9-rc (including)
Firefox Mozilla 0.9.1 (including) 0.9.1 (including)
Firefox Mozilla 0.9.2 (including) 0.9.2 (including)
Firefox Mozilla 0.9.3 (including) 0.9.3 (including)
Firefox Mozilla 0.10 (including) 0.10 (including)
Firefox Mozilla 0.10.1 (including) 0.10.1 (including)
Firefox Mozilla 1.0 (including) 1.0 (including)
Mozilla Mozilla 0.8 (including) 0.8 (including)
Mozilla Mozilla 0.9.2 (including) 0.9.2 (including)
Mozilla Mozilla 0.9.2.1 (including) 0.9.2.1 (including)
Mozilla Mozilla 0.9.3 (including) 0.9.3 (including)
Mozilla Mozilla 0.9.4 (including) 0.9.4 (including)
Mozilla Mozilla 0.9.4.1 (including) 0.9.4.1 (including)
Mozilla Mozilla 0.9.5 (including) 0.9.5 (including)
Mozilla Mozilla 0.9.6 (including) 0.9.6 (including)
Mozilla Mozilla 0.9.7 (including) 0.9.7 (including)
Mozilla Mozilla 0.9.8 (including) 0.9.8 (including)
Mozilla Mozilla 0.9.9 (including) 0.9.9 (including)
Mozilla Mozilla 0.9.35 (including) 0.9.35 (including)
Mozilla Mozilla 0.9.48 (including) 0.9.48 (including)
Mozilla Mozilla 1.0 (including) 1.0 (including)
Mozilla Mozilla 1.0-rc1 (including) 1.0-rc1 (including)
Mozilla Mozilla 1.0-rc2 (including) 1.0-rc2 (including)
Mozilla Mozilla 1.0.1 (including) 1.0.1 (including)
Mozilla Mozilla 1.0.2 (including) 1.0.2 (including)
Mozilla Mozilla 1.1 (including) 1.1 (including)
Mozilla Mozilla 1.1-alpha (including) 1.1-alpha (including)
Mozilla Mozilla 1.1-beta (including) 1.1-beta (including)
Mozilla Mozilla 1.2 (including) 1.2 (including)
Mozilla Mozilla 1.2-alpha (including) 1.2-alpha (including)
Mozilla Mozilla 1.2-beta (including) 1.2-beta (including)
Mozilla Mozilla 1.2.1 (including) 1.2.1 (including)
Mozilla Mozilla 1.3 (including) 1.3 (including)
Mozilla Mozilla 1.3.1 (including) 1.3.1 (including)
Mozilla Mozilla 1.4 (including) 1.4 (including)
Mozilla Mozilla 1.4-alpha (including) 1.4-alpha (including)
Mozilla Mozilla 1.4-beta (including) 1.4-beta (including)
Mozilla Mozilla 1.4.1 (including) 1.4.1 (including)
Mozilla Mozilla 1.4.2 (including) 1.4.2 (including)
Mozilla Mozilla 1.5 (including) 1.5 (including)
Mozilla Mozilla 1.5.1 (including) 1.5.1 (including)
Mozilla Mozilla 1.6 (including) 1.6 (including)
Mozilla Mozilla 1.7 (including) 1.7 (including)
Mozilla Mozilla 1.7-alpha (including) 1.7-alpha (including)
Mozilla Mozilla 1.7-beta (including) 1.7-beta (including)
Mozilla Mozilla 1.7-rc1 (including) 1.7-rc1 (including)
Mozilla Mozilla 1.7-rc2 (including) 1.7-rc2 (including)
Mozilla Mozilla 1.7-rc3 (including) 1.7-rc3 (including)
Mozilla Mozilla 1.7.1 (including) 1.7.1 (including)
Mozilla Mozilla 1.7.2 (including) 1.7.2 (including)
Mozilla Mozilla 1.7.3 (including) 1.7.3 (including)
Firefox Ubuntu dapper *
Firefox Ubuntu devel *
Firefox Ubuntu edgy *
Firefox Ubuntu feisty *
Firefox-granparadiso Ubuntu devel *
Lightning-sunbird Ubuntu devel *
Midbrowser Ubuntu devel *
Mozilla Ubuntu dapper *
Mozilla Ubuntu edgy *
Red Hat Enterprise Linux 2.1 RedHat galeon *
Red Hat Enterprise Linux 2.1 RedHat mozilla *
Red Hat Enterprise Linux 3 RedHat mozilla *
Red Hat Enterprise Linux 4 RedHat firefox-0:1.0.1-1.4.3 *

References