CVE-2007-1116
published 2007-02-26CVE-2007-1116: The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to…
PriorityP415medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
1.12%
63.0th percentile
The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI as a ChromeProtocol and can be loaded via JavaScript, which allows remote attackers to obtain sensitive information by querying the browser's session history.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://osvdb.org/33804http://securityreason.com/securityalert/2309http://www.gnucitizen.org/projects/hscan-redux/http://www.securityfocus.com/archive/1/461006/100/0/threadedhttp://www.securityfocus.com/archive/1/461013/100/0/threadedhttps://bugzilla.mozilla.org/show_bug.cgi?id=371375http://osvdb.org/33804http://securityreason.com/securityalert/2309http://www.gnucitizen.org/projects/hscan-redux/http://www.securityfocus.com/archive/1/461006/100/0/threadedhttp://www.securityfocus.com/archive/1/461013/100/0/threadedhttps://bugzilla.mozilla.org/show_bug.cgi?id=371375
2007-02-26
Published