CVE Vulnerabilities

CVE-2005-1531

Published: May 12, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Firefox before 1.0.4 and Mozilla Suite before 1.7.8 does not properly implement certain security checks for script injection, which allows remote attackers to execute script via Wrapped javascript: URLs, as demonstrated using (1) a javascript: URL in a view-source: URL, (2) a javascript: URL in a jar: URL, or (3) a nested variant.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla0.8 (including)0.8 (including)
FirefoxMozilla0.9 (including)0.9 (including)
FirefoxMozilla0.9-rc (including)0.9-rc (including)
FirefoxMozilla0.9.1 (including)0.9.1 (including)
FirefoxMozilla0.9.2 (including)0.9.2 (including)
FirefoxMozilla0.9.3 (including)0.9.3 (including)
FirefoxMozilla0.10 (including)0.10 (including)
FirefoxMozilla0.10.1 (including)0.10.1 (including)
FirefoxMozilla1.0 (including)1.0 (including)
FirefoxMozilla1.0.1 (including)1.0.1 (including)
FirefoxMozilla1.0.2 (including)1.0.2 (including)
FirefoxMozilla1.0.3 (including)1.0.3 (including)
MozillaMozilla*1.4 (including)
MozillaMozilla1.4.1 (including)1.4.1 (including)
MozillaMozilla1.5 (including)1.5 (including)
MozillaMozilla1.5-alpha (including)1.5-alpha (including)
MozillaMozilla1.5-rc1 (including)1.5-rc1 (including)
MozillaMozilla1.5-rc2 (including)1.5-rc2 (including)
MozillaMozilla1.5.1 (including)1.5.1 (including)
MozillaMozilla1.6 (including)1.6 (including)
MozillaMozilla1.6-alpha (including)1.6-alpha (including)
MozillaMozilla1.6-beta (including)1.6-beta (including)
MozillaMozilla1.7 (including)1.7 (including)
MozillaMozilla1.7-alpha (including)1.7-alpha (including)
MozillaMozilla1.7-beta (including)1.7-beta (including)
MozillaMozilla1.7-rc1 (including)1.7-rc1 (including)
MozillaMozilla1.7-rc2 (including)1.7-rc2 (including)
MozillaMozilla1.7-rc3 (including)1.7-rc3 (including)
MozillaMozilla1.7.1 (including)1.7.1 (including)
MozillaMozilla1.7.2 (including)1.7.2 (including)
MozillaMozilla1.7.3 (including)1.7.3 (including)
MozillaMozilla1.7.5 (including)1.7.5 (including)
MozillaMozilla1.7.6 (including)1.7.6 (including)
MozillaMozilla1.7.7 (including)1.7.7 (including)
Red Hat Enterprise Linux 4RedHatfirefox-0:1.0.4-1.4.1*
Red Hat Enterprise Linux 4RedHatdevhelp-0:0.9.2-2.4.5*
Firefox-granparadisoUbuntudevel*
Lightning-sunbirdUbuntudevel*
MidbrowserUbuntudevel*
MozillaUbuntuedgy*

References