CVE Vulnerabilities

CVE-2007-0800

Published: Feb 07, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Cross-zone vulnerability in Mozilla Firefox 1.5.0.9 considers blocked popups to have an internal zone origin, which allows user-assisted remote attackers to cross zone restrictions and read arbitrary file:// URIs by convincing a user to show a blocked popup.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla1.5.0.9 (including)1.5.0.9 (including)
Red Hat Enterprise Linux 2.1RedHatseamonkey-0:1.0.8-0.2.el2*
Red Hat Enterprise Linux 3RedHatseamonkey-0:1.0.8-0.2.el3*
Red Hat Enterprise Linux 4RedHatdevhelp-0:0.10-0.7.el4*
Red Hat Enterprise Linux 4RedHatseamonkey-0:1.0.8-0.2.el4*
Red Hat Enterprise Linux 4RedHatthunderbird-0:1.5.0.10-0.1.el4*
Red Hat Enterprise Linux 4RedHatfirefox-0:1.5.0.10-0.1.el4*
Red Hat Enterprise Linux 5RedHatdevhelp-0:0.12-10.0.1.el5*
Red Hat Enterprise Linux 5RedHatfirefox-0:1.5.0.10-2.el5*
Red Hat Enterprise Linux 5RedHatyelp-0:2.16.0-14.0.1.el5*
Red Hat Enterprise Linux 5RedHatthunderbird-0:1.5.0.10-1.el5*
FirefoxUbuntudapper*
FirefoxUbuntuedgy*
FirefoxUbuntufeisty*
IceapeUbuntugutsy*
Lightning-sunbirdUbuntudevel*
Lightning-sunbirdUbuntugutsy*
MidbrowserUbuntudevel*
MidbrowserUbuntugutsy*
XulrunnerUbuntudevel*
XulrunnerUbuntuedgy*
XulrunnerUbuntufeisty*
XulrunnerUbuntugutsy*

References