Firefox before 1.0 allows the user to store a (1) javascript: or (2) data: URLs as a Livefeed bookmark, then executes it in the security context of the currently loaded page when the user later accesses the bookmark, which could allow remote attackers to execute arbitrary code.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-01-29T05:00:00

Updated: 2024-08-07T21:05:25.301Z

Reserved: 2005-01-25T00:00:00

Link: CVE-2005-0150

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2005-05-26T04:00:00.000

Modified: 2017-10-11T01:29:52.170

Link: CVE-2005-0150

cve-icon Redhat

No data.