View Definition

Definition Id: oval:org.mitre.oval:def:100009 Version: 6  Last Modified: 2007-04-23
Title: Firefox Sidebar Script Injection via _search Target
Description: Firefox before 1.0.5 allows remote attackers to steal sensitive information by opening a malicious link in the Firefox sidebar using the _search target, then injecting script into other pages via a data: URL.
Family: windows Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2005-2264
Platform(s): Microsoft Windows NT
Microsoft Windows 2000
Microsoft Windows XP
Microsoft Windows Server 2003
Product(s): Mozilla Firefox
Definition Synopsis: