Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2005-0148
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-0148

Description:
Thunderbird before 0.9, when running on Windows systems, uses the default handler when processing javascript: links, which invokes Internet Explorer and may expose the Thunderbird user to vulnerabilities in the version of Internet Explorer that is installed on the user's system. NOTE: since the invocation between multiple products is a common practice, and the vulnerabilities inherent in multi-product interactions are not easily enumerable, this issue might be REJECTED in the future.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/19173

OVAL
  http://oval.mitre.org/oval/definitions/data/oval100048.html

CONFIRM
  http://www.mozilla.org/security/announce/mfsa2005-10.html

BID
  12407


Return to the previous page.