CVE Vulnerabilities

CVE-2005-2263

Published: Jul 13, 2005 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

The InstallTrigger.install method in Firefox before 1.0.5 and Mozilla before 1.7.9 allows remote attackers to execute a callback function in the context of another domain by forcing a page navigation after the install method has been called, which causes the callback to be run in the context of the new page and results in a same origin violation.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla 0.8 (including) 0.8 (including)
Firefox Mozilla 0.9 (including) 0.9 (including)
Firefox Mozilla 0.9-rc (including) 0.9-rc (including)
Firefox Mozilla 0.9.1 (including) 0.9.1 (including)
Firefox Mozilla 0.9.2 (including) 0.9.2 (including)
Firefox Mozilla 0.9.3 (including) 0.9.3 (including)
Firefox Mozilla 0.10 (including) 0.10 (including)
Firefox Mozilla 0.10.1 (including) 0.10.1 (including)
Firefox Mozilla 1.0 (including) 1.0 (including)
Firefox Mozilla 1.0.1 (including) 1.0.1 (including)
Firefox Mozilla 1.0.2 (including) 1.0.2 (including)
Firefox Mozilla 1.0.3 (including) 1.0.3 (including)
Firefox Mozilla 1.0.4 (including) 1.0.4 (including)
Mozilla Mozilla 1.3 (including) 1.3 (including)
Mozilla Mozilla 1.4 (including) 1.4 (including)
Mozilla Mozilla 1.4-alpha (including) 1.4-alpha (including)
Mozilla Mozilla 1.4.1 (including) 1.4.1 (including)
Mozilla Mozilla 1.5 (including) 1.5 (including)
Mozilla Mozilla 1.5-alpha (including) 1.5-alpha (including)
Mozilla Mozilla 1.5-rc1 (including) 1.5-rc1 (including)
Mozilla Mozilla 1.5-rc2 (including) 1.5-rc2 (including)
Mozilla Mozilla 1.5.1 (including) 1.5.1 (including)
Mozilla Mozilla 1.6 (including) 1.6 (including)
Mozilla Mozilla 1.6-alpha (including) 1.6-alpha (including)
Mozilla Mozilla 1.6-beta (including) 1.6-beta (including)
Mozilla Mozilla 1.7 (including) 1.7 (including)
Mozilla Mozilla 1.7-alpha (including) 1.7-alpha (including)
Mozilla Mozilla 1.7-beta (including) 1.7-beta (including)
Mozilla Mozilla 1.7-rc1 (including) 1.7-rc1 (including)
Mozilla Mozilla 1.7-rc2 (including) 1.7-rc2 (including)
Mozilla Mozilla 1.7-rc3 (including) 1.7-rc3 (including)
Mozilla Mozilla 1.7.1 (including) 1.7.1 (including)
Mozilla Mozilla 1.7.2 (including) 1.7.2 (including)
Mozilla Mozilla 1.7.3 (including) 1.7.3 (including)
Mozilla Mozilla 1.7.5 (including) 1.7.5 (including)
Mozilla Mozilla 1.7.6 (including) 1.7.6 (including)
Mozilla Mozilla 1.7.7 (including) 1.7.7 (including)
Mozilla Mozilla 1.7.8 (including) 1.7.8 (including)

References