Firefox before 1.0 allows the user to store a (1) javascript: or (2) data: URLs as a Livefeed bookmark, then executes it in the security context of the currently loaded page when the user later accesses the bookmark, which could allow remote attackers to execute arbitrary code.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2005-01-29T05:00:00

Updated: 2017-10-10T00:57:01

Reserved: 2005-01-25T00:00:00


Link: CVE-2005-0150

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2005-05-26T04:00:00.000

Modified: 2017-10-11T01:29:52.170


Link: CVE-2005-0150

JSON object: View

cve-icon Redhat Information

No data.