Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links with a custom getter and toString method that are middle-clicked by the user to be opened in a new tab.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firefox | Mozilla | 0.8 (including) | 0.8 (including) |
Firefox | Mozilla | 0.9 (including) | 0.9 (including) |
Firefox | Mozilla | 0.9.1 (including) | 0.9.1 (including) |
Firefox | Mozilla | 0.9.2 (including) | 0.9.2 (including) |
Firefox | Mozilla | 0.9.3 (including) | 0.9.3 (including) |
Mozilla | Mozilla | 1.7 (including) | 1.7 (including) |
Mozilla | Mozilla | 1.7-rc3 (including) | 1.7-rc3 (including) |
Mozilla | Mozilla | 1.7.1 (including) | 1.7.1 (including) |
Mozilla | Mozilla | 1.7.2 (including) | 1.7.2 (including) |
Mozilla | Mozilla | 1.7.3 (including) | 1.7.3 (including) |
Red Hat Enterprise Linux 2.1 | RedHat | galeon | * |
Red Hat Enterprise Linux 2.1 | RedHat | mozilla | * |
Red Hat Enterprise Linux 3 | RedHat | mozilla | * |
Red Hat Enterprise Linux 4 | RedHat | devhelp-0:0.9.2-2.4.3 | * |
Red Hat Enterprise Linux 4 | RedHat | evolution-0:2.0.2-14 | * |
Mozilla | Ubuntu | edgy | * |