The browser user interface in Firefox before 1.0.5, Mozilla before 1.7.9, and Netscape 8.0.2 and 7.2 does not properly distinguish between user-generated events and untrusted synthetic events, which makes it easier for remote attackers to perform dangerous actions that normally could only be performed manually by the user.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2005-07-13T04:00:00
Updated: 2024-08-07T22:22:47.741Z
Reserved: 2005-07-13T00:00:00
Link: CVE-2005-2260
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-07-13T04:00:00.000
Modified: 2024-11-20T23:59:09.443
Link: CVE-2005-2260
Redhat