CVE-2005-0752Mozilla Firefox vulnerability

10 documents5 sources
Severity
7.5HIGHNVD
EPSS
3.5%
top 12.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 18
Latest updateMay 1

Description

The Plugin Finder Service (PFS) in Firefox before 1.0.3 allows remote attackers to execute arbitrary code via a javascript: URL in the PLUGINSPAGE attribute of an EMBED tag.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDmozilla/firefox10 versions+9

Patches

🔴Vulnerability Details

1
GHSA
GHSA-qcgx-hf6g-j7qv: The Plugin Finder Service (PFS) in Firefox before 12022-05-01

📋Vendor Advisories

6
Red Hat
php: extract() can overwrite $GLOBALS and $this when using EXTR_OVERWRITE2010-12-08
Ubuntu
mozilla vulnerabilities2006-07-26
Ubuntu
Firefox vulnerabilities2006-07-25
Ubuntu
firefox vulnerabilities2006-06-09
Ubuntu
Ubuntu 4.10 update for Firefox vulnerabilities2005-07-28

💬Community

2
Bugzilla
CVE-2005-0752 security flaw2018-08-16
Bugzilla
CAN-2005-0752 Multiple firefox issues. (CAN-2005-0989)2005-04-16