Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allows scripts with the UniversalBrowserRead privilege to gain UniversalXPConnect privileges and possibly execute code or obtain sensitive data by reading into a privileged context.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2006-07-27T20:00:00
Updated: 2018-10-17T20:57:01
Reserved: 2006-07-24T00:00:00
Link: CVE-2006-3809
JSON object: View
NVD Information
Status : Modified
Published: 2006-07-27T20:04:00.000
Modified: 2018-10-17T21:31:10.080
Link: CVE-2006-3809
JSON object: View
Redhat Information
No data.
CWE