Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey before 1.0.8 ignores trailing invalid HTML characters in attribute names, which allows remote attackers to bypass content filters that use regular expressions.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2007-02-26T19:00:00
Updated: 2024-08-07T12:43:21.629Z
Reserved: 2007-02-16T00:00:00
Link: CVE-2007-0995
Vulnrichment
No data.
NVD
Status : Modified
Published: 2007-02-26T19:28:00.000
Modified: 2024-11-21T00:27:14.743
Link: CVE-2007-0995
Redhat