Mozilla Firefox before 22.0 does not properly enforce the X-Frame-Options protection mechanism, which allows remote attackers to conduct clickjacking attacks via a crafted web site that uses the HTTP server push feature with multipart responses.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mozilla
Published: 2013-06-26T01:00:00
Updated: 2017-09-18T12:57:01
Reserved: 2013-02-13T00:00:00
Link: CVE-2013-1696
JSON object: View
NVD Information
Status : Modified
Published: 2013-06-26T03:19:10.883
Modified: 2017-09-19T01:36:11.327
Link: CVE-2013-1696
JSON object: View
Redhat Information
No data.
CWE