CVE-2005-1157
N/A
N/A
Summary
Firefox before 1.0.3, Mozilla Suite before 1.7.7, and Netscape 7.2 allows remote attackers to replace existing search plugins with malicious ones using sidebar.addSearchEngine and the same filename as the target engine, which may not be displayed in the GUI, which could then be used to execute malicious script, aka "Firesearching 2."
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://www.redhat.com/support/errata/RHSA-2005-386.html
- http://secunia.com/advisories/14992
- http://www.mozilla.org/security/announce/mfsa2005-38.html
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
- http://www.securityfocus.com/bid/15495
- http://www.mikx.de/firesearching/
- http://secunia.com/advisories/14938
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20125
- http://www.redhat.com/support/errata/RHSA-2005-384.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9961
- http://www.redhat.com/support/errata/RHSA-2005-383.html
- http://www.securityfocus.com/bid/13211
- http://secunia.com/advisories/14996
- https://bugzilla.mozilla.org/show_bug.cgi?id=290037
References
- http://www.redhat.com/support/errata/RHSA-2005-386.html
- http://secunia.com/advisories/14992
- http://www.mozilla.org/security/announce/mfsa2005-38.html
- ftp://ftp.sco.com/pub/updates/OpenServer/SCOSA-2005.49/SCOSA-2005.49.txt
- http://www.securityfocus.com/bid/15495
- http://www.mikx.de/firesearching/
- http://secunia.com/advisories/14938
- https://exchange.xforce.ibmcloud.com/vulnerabilities/20125
- http://www.redhat.com/support/errata/RHSA-2005-384.html
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9961
- http://www.redhat.com/support/errata/RHSA-2005-383.html
- http://www.securityfocus.com/bid/13211
- http://secunia.com/advisories/14996
- https://bugzilla.mozilla.org/show_bug.cgi?id=290037
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.