Mozilla Firefox 1.5.0.4, 2.0.x before 2.0.0.8, Mozilla Suite 1.7.13, Mozilla SeaMonkey 1.0.2 and other versions before 1.1.5, and Netscape 8.1 and earlier allow user-assisted remote attackers to read arbitrary files by tricking a user into typing the characters of the target filename in a text box and using the OnKeyDown, OnKeyPress, and OnKeyUp Javascript keystroke events to change the focus and cause those characters to be inserted into a file upload input control, which can then upload the file when the user submits the form.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DSA-1392-1 | New xulrunner packages fix several vulnerabilities |
![]() |
DSA-1396-1 | New iceweasel packages fix several vulnerabilities |
![]() |
DSA-1401-1 | New iceape packages fix several vulnerabilities |
![]() |
EUVD-2006-2891 | Mozilla Firefox 1.5.0.4, 2.0.x before 2.0.0.8, Mozilla Suite 1.7.13, Mozilla SeaMonkey 1.0.2 and other versions before 1.1.5, and Netscape 8.1 and earlier allow user-assisted remote attackers to read arbitrary files by tricking a user into typing the characters of the target filename in a text box and using the OnKeyDown, OnKeyPress, and OnKeyUp Javascript keystroke events to change the focus and cause those characters to be inserted into a file upload input control, which can then upload the file when the user submits the form. |
![]() |
USN-535-1 | Firefox vulnerabilities |
![]() |
USN-536-1 | Thunderbird vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T18:06:27.190Z
Reserved: 2006-06-07T00:00:00
Link: CVE-2006-2894

No data.

Status : Deferred
Published: 2006-06-07T10:02:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2006-2894

No data.

No data.