|
|

CVE Reference: CVE-2005-1157 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2005-1157 |
|
|
Description: Firefox before 1.0.3, Mozilla Suite before 1.7.7, and Netscape 7.2 allows remote attackers to replace existing search plugins with malicious ones using sidebar.addSearchEngine and the same filename as the target engine, which may not be displayed in the GUI, which could then be used to execute malicious script, aka "Firesearching 2." |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/20125 SCO SAID Secunia Advisory: SA14938 Secunia Advisory: SA14992 Secunia Advisory: SA14996 REDHAT http://www.redhat.com/support/errata/RHSA-2005-384.html http://www.redhat.com/support/errata/RHSA-2005-386.html http://www.redhat.com/support/errata/RHSA-2005-383.html OVAL http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:9961 MISC http://www.mikx.de/firesearching/ CONFIRM http://www.mozilla.org/security/announce/mfsa2005-38.html BID 15495 13211 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |