Mozilla Firefox before the Preview Release, Mozilla before 1.7.3, and Thunderbird before 0.8 allows untrusted Javascript code to read and write to the clipboard, and possibly obtain sensitive information, via script-generated events such as Ctrl-Ins.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:49
Type | Values Removed | Values Added |
---|---|---|
References | () http://bugzilla.mozilla.org/show_bug.cgi?id=257523 - Exploit, Patch | |
References | () http://marc.info/?l=bugtraq&m=109698896104418&w=2 - | |
References | () http://marc.info/?l=bugtraq&m=109900315219363&w=2 - | |
References | () http://secunia.com/advisories/12526 - | |
References | () http://security.gentoo.org/glsa/glsa-200409-26.xml - | |
References | () http://www.kb.cert.org/vuls/id/460528 - US Government Resource | |
References | () http://www.mozilla.org/projects/security/known-vulnerabilities.html#mozilla1.7.3 - | |
References | () http://www.novell.com/linux/security/advisories/2004_36_mozilla.html - Patch | |
References | () http://www.securityfocus.com/bid/11179 - Exploit, Patch | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/17376 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9745 - |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:49
NVD link : CVE-2004-0908
Mitre link : CVE-2004-0908
CVE.ORG link : CVE-2004-0908
JSON object : View
Products Affected
mozilla
- thunderbird
- mozilla
CWE